Multiple vulnerabilities have been reported in Veeam Service Provider Console, which could allow an unauthenticated remote attacker to bypass authentication, arbitrary file write on the management server, cause denial of service (DoS) and gain administrative access on the targeted system.
Target Audience:
All organizations and individuals using the affected Veeam Service Provider Console.
Risk Assessment:
High risk of complete system compromise, execution of arbitrary commands, and denial of service (DoS) condition.
Impact Assessment:
Potential for Authentication bypass, arbitrary command execution, and unauthorized administrative access.
The information provided herein is on "as is" basis, without warranty of any kind.