CVE-2024-22022

Publication date

2024-02-07 00:53:30

Family

hackerone

State

PUBLISHED

Description

Vulnerability CVE-2024-22022 allows a Veeam Recovery Orchestrator user that has been assigned a low-privileged role to access the NTLM hash of the service account used by the Veeam Orchestrator Server Service.