CVE Vulnerabilities

CVE-2023-38548

Published: Nov 07, 2023 | Modified: Mar 06, 2025
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A vulnerability in Veeam ONE allows an unprivileged user who has access to the Veeam ONE Web Client the ability to acquire the NTLM hash of the account used by the Veeam ONE Reporting Service.

Affected Software

NameVendorStart VersionEnd Version
OneVeeam12.0.0.2498 (including)12.0.0.2498 (including)
OneVeeam12.0.1.2591 (including)12.0.1.2591 (including)

References