Veeam Backup & Replication: Critical Patches for Vulnerabilities
Overview: Veeam released patches for 13 high-severity and five critical vulnerabilities, including an unauthenticated remote code execution (RCE) flaw in Veeam Backup & Replication (CVE-2024-40711), which has a CVSS score of 9.8. This vulnerability could allow attackers to fully take over a system, and security firm CODE WHITE, who discovered it, warned that disclosing technical details could lead to its exploitation by ransomware gangs.
Key Vulnerabilities:
- Unauthenticated RCE: Exploitable without user authentication, allowing attackers to remotely execute code and compromise systems.
- Other vulnerabilities could result in unauthorized access, data exposure, and system manipulation.
Recommendations:
- Patch Immediately: Apply the latest Veeam updates to all affected systems.
- Strengthen Monitoring: Implement enhanced monitoring for abnormal activity post-patch.
- Backup Regularly: Ensure offsite and offline backups are available for quick restoration.
SonicWall SonicOS: Active Exploitation of CVE-2024-40766
Overview: A critical vulnerability has been discovered in SonicWall’s SonicOS Management Access and SSLVPN (CVE-2024-40766), potentially leading to unauthorized resource access. In some cases, this vulnerability can cause firewalls to crash. SonicWall has confirmed active exploitation in the wild, making this vulnerability particularly urgent.
Systems Affected:
- SOHO (Gen 5) 5.9.2.14-12o and older versions
- Gen6 Firewalls 6.5.4.14-109n and older versions
- Gen7 Firewalls SonicOS build version 7.0.1-5035 and older versions
Threat Intelligence: SonicWall reports that CVE-2024-40766 is actively exploited, making the need for immediate action critical.
Risk:
- Large and medium businesses: High
- Small businesses: Medium
- Home users: Low
Recommendations:
- Apply Patches Immediately: Update SonicOS Management Access and SSLVPN systems with the latest security patches provided by SonicWall.
- Implement Network Segmentation: Use logical network segmentation to isolate critical systems and reduce exposure.
- Monitor and Respond: Ensure monitoring systems are in place to detect unauthorized access attempts, and develop a response plan for potential intrusions.
Sources
SC Media: Veeam patches 5 critical vulnerabilities, including unauthenticated RCE flaw
Sonic Wall: Security Advisory