Critical severity9.0NVD Advisory· Published Jun 11, 2024· Updated Jun 17, 2026
CVE-2024-29855
CVE-2024-29855
Description
Hard-coded JWT secret allows authentication bypass in Veeam Recovery Orchestrator
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:veeam:recovery_orchestrator:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:veeam:recovery_orchestrator:*:*:*:*:*:*:*:*range: <7.0.0.379
- (no CPE)
- (no CPE)range: 7.1.0.230
Patches
Vulnerability mechanics
References
1- www.veeam.com/kb4585nvdVendor Advisory
News mentions
0No linked articles in our index yet.