VendorsVeeamrecovery_orchestratorany version
Vulnerabilities

Veeam Recovery Orchestrator any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2024-29855
Hard-coded JWT secret allows authentication bypass in Veeam Recovery Orchestrator
Published 2024-06-11 · Analyzed
9.0EPSS 0.216
CVE-2024-22022
Vulnerability CVE-2024-22022 allows a Veeam Recovery Orchestrator user that has been assigned a low-privileged role to access the NTLM hash of the service account used by the Veeam Orchestrator Server Service.
Published 2024-02-07 · Modified
8.8EPSS 0.007