CVE-2023-27532

CVSS V2 None CVSS V3 None
Description
Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database to be obtained. This may lead to gaining access to the backup infrastructure hosts.
Overview
  • CVE ID
  • CVE-2023-27532
  • Assigner
  • support@hackerone.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-03-10T22:15:10
  • Last Modified Date
  • 2023-03-16T17:23:23
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:veeam:backup_\&_replication:11.0.1.1261:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:veeam:backup_\&_replication:11.0.1.1261:-:*:*:*:*:*:* 1 OR
cpe:2.3:a:veeam:backup_\&_replication:11.0.1.1261:p20211123:*:*:*:*:*:* 1 OR
cpe:2.3:a:veeam:backup_\&_replication:11.0.1.1261:p20211211:*:*:*:*:*:* 1 OR
cpe:2.3:a:veeam:backup_\&_replication:11.0.1.1261:p20220302:*:*:*:*:*:* 1 OR
cpe:2.3:a:veeam:backup_\&_replication:12.0.0.1420:-:*:*:*:*:*:* 1 OR
References
Reference URL Reference Tags
https://www.veeam.com/kb4424 Vendor Advisory
History
Created Old Value New Value Data Type Notes
2023-04-17 06:17:57 Added to TrackCVE
2023-04-17 06:18:00 Weakness Enumeration new