CVE-2023-41723 is a medium-severity vulnerability affecting Veeam ONE, allowing a Read-Only User to view the Dashboard Schedule. The CVSS score of 4.3 reflects a low-complexity attack requiring low privileges, with a limited impact on confidentiality as only viewing is possible, not modification. While not actively exploited (no KEV entry) and lacking public exploit code, the vulnerability has garnered significant community discussion and media coverage, indicating awareness within the cybersecurity landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.0.0.1379CPE matchmatch criteria | cpe:2.3:a:veeam:one:11.0.0.1379:*:*:*:*:*:*:* | ||
11.0.1.1880CPE matchmatch criteria | cpe:2.3:a:veeam:one:11.0.1.1880:*:*:*:*:*:*:* | ||
12.0.0.2498CPE matchmatch criteria | cpe:2.3:a:veeam:one:12.0.0.2498:*:*:*:*:*:*:* | ||
12.0.1.2591CPE matchmatch criteria | cpe:2.3:a:veeam:one:12.0.1.2591:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.