CVE Vulnerabilities

CVE-2023-38548

Published: Nov 07, 2023 | Modified: Nov 14, 2023
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability in Veeam ONE allows an unprivileged user who has access to the Veeam ONE Web Client the ability to acquire the NTLM hash of the account used by the Veeam ONE Reporting Service.

Affected Software

Name Vendor Start Version End Version
One Veeam 12.0.0.2498 (including) 12.0.0.2498 (including)
One Veeam 12.0.1.2591 (including) 12.0.1.2591 (including)

References