CVE-2024-40711

9.8CRITICAL

A deserialization of untrusted data vulnerability with a malicious payload can allow an unauthenticated remote code execution (RCE).

게시됨: 9/7/2024업데이트됨: 10/30/2025

CISA 알려진 악용 취약점

Veeam Backup and Replication contains a deserialization vulnerability allowing an unauthenticated user to perform remote code execution.

필요한 조치:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

마감일:

2024-11-07

알려진 랜섬웨어 사용

설명

A deserialization of untrusted data vulnerability with a malicious payload can allow an unauthenticated remote code execution (RCE).

AI 분석AI 기반

영향받는 제품

veeamveeam_backup_\&_replication

참조