Lucene search

K
vulnrichmentHackeroneVULNRICHMENT:CVE-2024-29852
HistoryMay 22, 2024 - 10:55 p.m.

CVE-2024-29852

2024-05-2222:55:11
hackerone
github.com
1
veeam backup enterprise manager
high-privileged users
backup session logs

2.7 Low

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

Veeam Backup Enterprise Manager allows high-privileged users to read backup session logs.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "vendor": "Veeam",
    "product": "Backup & Replication",
    "versions": [
      {
        "version": "12.1.2.172",
        "status": "affected",
        "lessThan": "12.1.2.172",
        "versionType": "semver"
      }
    ]
  }
]

2.7 Low

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

Related for VULNRICHMENT:CVE-2024-29852