First published: Tue Nov 07 2023(Updated: )
A vulnerability in Veeam ONE allows a user with the Veeam ONE Read-Only User role to view the Dashboard Schedule. Note: The criticality of this vulnerability is reduced because the user with the Read-Only role is only able to view the schedule and cannot make changes.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Veeam ONE | =11.0.0.1379 | |
Veeam ONE | =11.0.1.1880 | |
Veeam ONE | =12.0.0.2498 | |
Veeam ONE | =12.0.1.2591 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2023-41723.
The title of this vulnerability is 'A vulnerability in Veeam ONE allows a user with the Veeam ONE Read-Only User role to view the Dashboard Schedule'.
The severity of CVE-2023-41723 is medium with a severity score of 4.3.
The following versions of Veeam ONE are affected by CVE-2023-41723: 11.0.0.1379, 11.0.1.1880, 12.0.0.2498, and 12.0.1.2591.
To fix CVE-2023-41723, it is recommended to update to the latest version of Veeam ONE.