CVE-2024-42024: Veeam One

High severity, CVSS 8.8. EPSS: 1.3% chance of exploitation in the next 30 days.

A vulnerability that allows an attacker in possession of the Veeam ONE Agent service account credentials to perform remote code execution on the machine where the Veeam ONE Agent is installed.

Affected products

  • Veeam One: from 12.0.0.2498, before 12.2.0.4093 (fixed in 12.2.0.4093)

Published 2024-09-07. Last modified 2026-06-17.