ZeroHour

CVE-2024-40714

CVSS 3.1
8.3 high
EPSS
<1%p29
Published
()
Modified
Description

An improper certificate validation vulnerability in TLS certificate validation allows an attacker on the same network to intercept sensitive credentials during restore operations.

Vendors
veeam
Products
veeam backup \& replication
Weakness
CWE-295
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H

In the news