Vulnerabilities > Veeam > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-09-07 CVE-2024-40711 Deserialization of Untrusted Data vulnerability in Veeam Backup & Replication 12.0.0.1420
A deserialization of untrusted data vulnerability with a malicious payload can allow an unauthenticated remote code execution (RCE).
network
low complexity
veeam CWE-502
critical
9.8
2023-11-07 CVE-2023-38547 Unspecified vulnerability in Veeam ONE
A vulnerability in Veeam ONE allows an unauthenticated user to gain information about the SQL server connection Veeam ONE uses to access its configuration database.
network
low complexity
veeam
critical
9.8
2022-12-05 CVE-2022-43549 Improper Authentication vulnerability in Veeam Backup for Google Cloud 1.0/3.0
Improper authentication in Veeam Backup for Google Cloud v1.0 and v3.0 allows attackers to bypass authentication mechanisms.
network
low complexity
veeam CWE-287
critical
9.8
2022-03-17 CVE-2022-26501 Missing Authentication for Critical Function vulnerability in Veeam Backup & Replication
Veeam Backup & Replication 10.x and 11.x has Incorrect Access Control (issue 1 of 2).
network
low complexity
veeam CWE-306
critical
9.8