CVE-2023-27532

EUVD-2023-31287
Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database to be obtained. This may lead to gaining access to the backup infrastructure hosts.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CISA-ADPADP
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 99%
Affected Products (NVD)
VendorProductVersion
veeamveeam_backup_\&_replication
𝑥
< 11.0.1.1261
veeamveeam_backup_\&_replication
11.0.1.1261
veeamveeam_backup_\&_replication
11.0.1.1261:p20211123
veeamveeam_backup_\&_replication
11.0.1.1261:p20211211
veeamveeam_backup_\&_replication
11.0.1.1261:p20220302
veeamveeam_backup_\&_replication
12.0.0.1420
𝑥
= Vulnerable software versions