CVE-2024-40714: Veeam Backup & Replication

High severity, CVSS 8.3. EPSS: 0.4% chance of exploitation in the next 30 days.

An improper certificate validation vulnerability in TLS certificate validation allows an attacker on the same network to intercept sensitive credentials during restore operations.

Affected products

  • Veeam Veeam Backup & Replication: before 12.2.0.334 (fixed in 12.2.0.334)

Published 2024-09-07. Last modified 2026-06-17.