CVE-2024-29849: Veeam Backup & Replication

Critical severity, CVSS 9.8. EPSS: 38.4% chance of exploitation in the next 30 days.

Veeam Backup Enterprise Manager allows unauthenticated users to log in as any user to enterprise manager web interface.

Affected products

  • Veeam Veeam Backup & Replication: before 12.1.2.172 (fixed in 12.1.2.172)

Published 2024-05-22. Last modified 2026-06-17.