CVE-2024-42023: Veeam One

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

An improper access control vulnerability allows low-privileged users to execute code with Administrator privileges remotely.

Affected products

  • Veeam One: from 12.0.0.2498, before 12.2.0.4093 (fixed in 12.2.0.4093)

Published 2024-09-07. Last modified 2026-06-17.