Vulnerabilities > Veeam > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-11-07 CVE-2023-38547 Unspecified vulnerability in Veeam ONE
A vulnerability in Veeam ONE allows an unauthenticated user to gain information about the SQL server connection Veeam ONE uses to access its configuration database.
network
low complexity
veeam
critical
9.8
2022-12-05 CVE-2022-43549 Improper Authentication vulnerability in Veeam Backup for Google Cloud 1.0/3.0
Improper authentication in Veeam Backup for Google Cloud v1.0 and v3.0 allows attackers to bypass authentication mechanisms.
network
low complexity
veeam CWE-287
critical
9.8
2022-03-17 CVE-2022-26504 Improper Authentication vulnerability in Veeam Backup & Replication
Improper authentication in Veeam Backup & Replication 9.5U3, 9.5U4,10.x and 11.x component used for Microsoft System Center Virtual Machine Manager (SCVMM) allows attackers execute arbitrary code via Veeam.Backup.PSManager.exe
network
low complexity
veeam CWE-287
critical
9.0
2022-03-17 CVE-2022-26501 Missing Authentication for Critical Function vulnerability in Veeam Backup & Replication
Veeam Backup & Replication 10.x and 11.x has Incorrect Access Control (issue 1 of 2).
network
low complexity
veeam CWE-306
critical
9.8