Veeam Warns of Critical Vulnerability in Service Provider Console

December 4, 2024 at 01:38PM Veeam released patches for two vulnerabilities in its Service Provider Console, including a critical remote code execution flaw (CVE-2024-42448) with a CVSS score of 9.9. Service providers are urged to update to version 8.1.0.21999. The second flaw (CVE-2024-42449) allows potential data leaks and file deletion. ### Meeting Takeaways 1. **Vulnerabilities … Read more

Veeam warns of critical RCE bug in Service Provider Console

December 3, 2024 at 01:14PM Veeam has issued security updates for two critical vulnerabilities in its Service Provider Console (VSPC), including a high-severity remote code execution flaw (CVE-2024-42448). Users of VSPC versions 7 and 8 are urged to upgrade to the latest patch to prevent exploitation, which has already been linked to ransomware attacks. ### … Read more