CVE-2024-40712: Veeam Backup & Replication
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
A path traversal vulnerability allows an attacker with a low-privileged account and local access to the system to perform local privilege escalation (LPE).
Affected products
- Veeam Veeam Backup & Replication: before 12.2.0.334 (fixed in 12.2.0.334)
Published 2024-09-07. Last modified 2026-06-17.