2 results (0.002 seconds)

CVSS: 9.0EPSS: 0%CPEs: 6EXPL: 0

05 Feb 2025 — A vulnerability in Veeam Updater component allows Man-in-the-Middle attackers to execute arbitrary code on the affected server. This issue occurs due to a failure to properly validate TLS certificate. • https://www.veeam.com/kb4712 •

CVSS: 7.2EPSS: 0%CPEs: 1EXPL: 0

14 Jan 2025 — Veeam Backup for Microsoft Azure is vulnerable to Server-Side Request Forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. • https://www.veeam.com/kb4709 • CWE-918: Server-Side Request Forgery (SSRF) •