CVE-2024-22021

Publication date

2024-02-07 00:53:30

Family

hackerone

State

PUBLISHED

Description

Vulnerability CVE-2024-22021 allows a Veeam Recovery Orchestrator user with a low privileged role (Plan Author) to retrieve plans from a Scope other than the one they are assigned to.