CVE Vulnerabilities

CVE-2022-43549

Improper Authentication

Published: Dec 05, 2022 | Modified: Apr 24, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Improper authentication in Veeam Backup for Google Cloud v1.0 and v3.0 allows attackers to bypass authentication mechanisms.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

NameVendorStart VersionEnd Version
Veeam_backup_for_google_cloudVeeam1.0 (including)1.0 (including)
Veeam_backup_for_google_cloudVeeam3.0 (including)3.0 (including)

Potential Mitigations

References