HomeSecurityVeeam warns of critical vulnerability in VBEM

Veeam warns of critical vulnerability in VBEM

Veeam has warned customers about a critical security vulnerability that could allow unauthorized attackers to log in to any account through Veeam Backup Enterprise Manager (VBEM). Customers are urged to patch the vulnerability immediately.

Veeam VBEM vulnerability

VBEM is a platform that allows administrators to manage Veeam Backup & Replication through a single web console. It is very useful for controlling backup and recovery tasks across an organization's entire backup .

The vulnerability fixed by Veeam is tracked as CVE-2024-29849 and is rated extremely severe (CVSS 9.8/10). However, VBEM is not enabled by default and not all environments are vulnerable.

See also: Vulnerability in Python package for AI models and PDF.js

“This vulnerability in Veeam Backup Enterprise Manager allows an unauthorized attacker to log in to the Veeam Backup Enterprise Manager web interface as any user,” the company explains.

Administrators are urged to immediately upgrade their systems to VBEM version 12.1.2.172, but if they are unable to do so, they should stop and disable the VeeamEnterpriseManagerSvc (Veeam Backup Enterprise Manager) and VeeamRESTSvc (Veeam RESTful API) services .

uninstalled  Veeam Backup Enterprise Manager can also be completely if it is not currently being used by an organization.

Veeam: Fixing other vulnerabilities

Veeam is also patching two other serious vulnerabilities in VBEM. One allows control of an account via NTLM relay (CVE-2024-29850) and the other allows highly privileged users to steal the NTLM hash of the Veeam Backup Enterprise Manager account if it is not configured to run as the default Local System account (CVE-2024-29851).

See also: QNAP QTS: 15 vulnerabilities found – PoC exploit available for one of them

Veeam warns of critical vulnerability in VBEM

Veeam products are used by more than 450,000 customers worldwide, so protecting its products is very important.

In today’s digital age, businesses must prioritize cybersecurity measures to protect their data and operations. Being vigilant about patching known vulnerabilities, like the one discovered by Veeam, is crucial to preventing potential breaches and ensuring the security of sensitive information.

By staying informed and taking timely action, organizations can better protect themselves from cyber. Therefore, it is essential for businesses to regularly update their software and systems with the latest security patches.

See also: CISA warns of Chrome, D-Link vulnerability exploitation

Additionally, it is important for organizations to have a comprehensive cybersecurity plan that includes regular vulnerability assessments and timely remediation processes. By prioritizing security, businesses can protect themselves from potential attacks and maintain customer trust by protecting their sensitive information.

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

Source: www.bleepingcomputer.com

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS