PT-2024-4156 · Veeam · Veeam Agent For Microsoft Windows

Yashar Shahinzadeh

·

Published

2024-05-21

·

Updated

2025-10-11

·

CVE-2024-29853

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Veeam Agent for Microsoft Windows (affected versions not specified)
Description The issue is related to weaknesses in the authentication procedure of Veeam Agent for Microsoft Windows, allowing for local privilege escalation. This can enable an attacker to elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Authentication Bypass Using an Alternate Path or Channel

Improper Authentication

Weakness Enumeration

Related Identifiers

BDU:2024-04640
CVE-2024-29853

Affected Products

Veeam Agent For Microsoft Windows