Описание
A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify configurations on connected virtual infrastructure hosts. This includes the ability to power off virtual machines, delete files in storage, and make configuration changes, potentially leading to Denial of Service (DoS) and data integrity issues. The vulnerability is caused by improper permission checks in methods accessed via management services.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
EPSS
7.4 High
CVSS3
8.1 High
CVSS3
Дефекты
Связанные уязвимости
A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify configurations on connected virtual infrastructure hosts. This includes the ability to power off virtual machines, delete files in storage, and make configuration changes, potentially leading to Denial of Service (DoS) and data integrity issues. The vulnerability is caused by improper permission checks in methods accessed via management services.
Уязвимость службы управления Veeam Backup Enterprise Manager средства защиты облачных, виртуальных и физических систем Veeam Backup & Replication, позволяющая нарушителю повысить свои привилегии и вызвать отказ в обслуживании
EPSS
7.4 High
CVSS3
8.1 High
CVSS3