First published: Sat Sep 07 2024(Updated: )
A vulnerability that allows an attacker in possession of the Veeam ONE Agent service account credentials to perform remote code execution on the machine where the Veeam ONE Agent is installed.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Veeam ONE | >=12.0.0.2498<12.2.0.4093 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-42024 is considered a critical vulnerability due to its potential for remote code execution.
To resolve CVE-2024-42024, it is recommended to update the Veeam ONE software to a secure version.
The consequences of CVE-2024-42024 include unauthorized remote code execution, which can compromise the affected system.
CVE-2024-42024 affects users of Veeam ONE versions between 12.0.0.2498 and 12.2.0.4093.
Attackers with access to the Veeam ONE Agent service account credentials can execute arbitrary code on the target machine.