Security Advisory

CVE-2024-22022

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-07 00:53:30
Last updated 2025-06-03 18:40:07
Assigner hackerone
State PUBLISHED

Description

Vulnerability CVE-2024-22022 allows a Veeam Recovery Orchestrator user that has been assigned a low-privileged role to access the NTLM hash of the service account used by the Veeam Orchestrator Server Service.