CVE-2015-5742: Infoleak
VeeamVixProxy in Veeam Backup & Replication (B&R) before 8.0 update 3 stores local administrator credentials in log files with world-readable permissions, which allows local users to obtain sensitive information by reading the files.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-5742?
CVE-2015-5742 has a medium severity rating due to the potential exposure of sensitive credential information.
How do I fix CVE-2015-5742?
To fix CVE-2015-5742, upgrade Veeam Backup & Replication to version 8.0 update 3 or later where the issue has been resolved.
What systems are affected by CVE-2015-5742?
CVE-2015-5742 affects Veeam Backup & Replication versions prior to 8.0 update 3.
What type of information is exposed in CVE-2015-5742?
CVE-2015-5742 exposes local administrator credentials stored in log files with world-readable permissions.
Can CVE-2015-5742 be exploited by local users?
Yes, CVE-2015-5742 can be exploited by local users who can read the log files to obtain sensitive information.