Security Advisory

CVE-2024-22021

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-02-07 00:53:30
Last updated 2026-03-02 18:32:29
Assigner hackerone
CVSS score 6.5
State PUBLISHED

Description

Vulnerability CVE-2024-22021 allows a Veeam Recovery Orchestrator user with a low privileged role (Plan Author) to retrieve plans from a Scope other than the one they are assigned to.