Veeam: community verdicts
2 notable / known-exploited Veeam CVEs the community has triaged.
ⓘ Not an exhaustive list: we focus on the findings that matter (exploited / notable). For every Veeam CVE, see NVD ↗.
- CVE-2024-40711CRIT 9.8KEVEPSS 90%
A deserialization of untrusted data vulnerability with a malicious payload can allow an unauthenticated remote code execution (RCE).
- CVE-2023-27532HIGH 7.5KEVEPSS 78%
Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database to be obtained. This may lead to gaining access to the backup infrastructure hosts.