CVE-2024-40715: Veeam Backup & Replication

High severity, CVSS 7.7. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability in Veeam Backup & Replication Enterprise Manager has been identified, which allows attackers to perform authentication bypass. Attackers must be able to perform Man-in-the-Middle (MITM) attack to exploit this vulnerability.

Affected products

  • Veeam Veeam Backup & Replication: before 12.2.0.334 (fixed in 12.2.0.334)

Published 2024-11-07. Last modified 2026-06-17.