High severity8.8NVD Advisory· Published Feb 7, 2024· Updated Jun 17, 2026
CVE-2024-22022
CVE-2024-22022
Description
Vulnerability CVE-2024-22022 allows a Veeam Recovery Orchestrator user that has been assigned a low-privileged role to access the NTLM hash of the service account used by the Veeam Orchestrator Server Service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:veeam:recovery_orchestrator:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:veeam:recovery_orchestrator:*:*:*:*:*:*:*:*range: <7.0
- (no CPE)
- (no CPE)range: 6
- Range: 4
Patches
Vulnerability mechanics
References
1- veeam.com/kb4541nvdVendor Advisory
News mentions
0No linked articles in our index yet.