PT-2025-4812 · Veeam · Veeam Backup For Microsoft Azure

CVE-2025-23082

·

Publicado

2025-01-13

·

Atualizado

2025-07-03

CVSS v3.1

7.2

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Veeam Backup for Microsoft Azure versions prior to 7.1.0.59
Description Veeam Backup for Microsoft Azure is vulnerable to Server-Side Request Forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Recommendations For versions prior to 7.1.0.59, update to Veeam Backup for Microsoft Azure version 7.1.0.59 as soon as possible. As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation.

Correção

SSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2025-02271
CVE-2025-23082

Produtos afetados

Veeam Backup For Microsoft Azure