Vulnerability CVE-2024-22022 allows a Veeam Recovery...
High severity
Unreviewed
Published
Feb 7, 2024
to the GitHub Advisory Database
•
Updated Jun 3, 2025
Description
Published by the National Vulnerability Database
Feb 7, 2024
Published to the GitHub Advisory Database
Feb 7, 2024
Last updated
Jun 3, 2025
Vulnerability CVE-2024-22022 allows a Veeam Recovery Orchestrator user that has been assigned a low-privileged role to access the NTLM hash of the service account used by the Veeam Orchestrator Server Service.
References