← Back

CVE-2024-45204

nvd nist
Published: Dec 4, 2024Modified: Apr 24, 2025

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

A vulnerability exists where a low-privileged user can exploit insufficient permissions in credential handling to leak NTLM hashes of saved credentials. The exploitation involves using retrieved credentials to expose sensitive NTLM hashes, impacting systems beyond the initial target and potentially leading to broader security vulnerabilities.

Affected (1)

1 product
Veeam Backup & Replication
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 12.0.0.1402 to 12.3.0.310

References (1)

Source: support@hackerone.com
Vendor Advisory

Timeline

No history available yet.