Patch
CVE-2024-29849
with vRx
🔒 Mitigating CVE-2024-29849 in Veeam Backup Enterprise Manager
As vulnerabilities in critical systems can lead to severe security breaches, it's essential to keep your software updated and properly configured. This post details a script to mitigate CVE-2024-29849, a critical vulnerability in Veeam Backup Enterprise Manager, by disabling vulnerable services.
🔍 How it works:
This script performs the following actions:
Service Stopping: It stops the VeeamEnterpriseManagerSvc and VeeamRESTSvc services.
Service Disabling: It disables these services to ensure they do not start automatically, providing temporary mitigation for the vulnerability.
⚠️ Why it matters
CVE-2024-29849 is a critical vulnerability that allows unauthenticated users to log in as any user to the Veeam Backup Enterprise Manager web interface. This can lead to unauthorized access to sensitive data and administrative functions, posing a significant security risk.
By running this script, administrators can temporarily mitigate the vulnerability by stopping and disabling the affected services, ensuring that the system remains protected until a full update can be applied. This is crucial for maintaining security and preventing potential exploitation.
Important note: This mitigation is mainly useful if you cannot upgrade the software immediately, otherwise it is important to upgrade Veeam Backup Enterprise Manager to version 12.1.2.172 or higher.
References: https://www.veeam.com/kb4581
Stay safe!
Read more
Read less
Patch faster and smarter
with vRx
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
More than 600 customers trust vRx:




Solution
Remediate faster with vRx
Patch Management
vRx automatically deploys patches across all systems, cutting patching time by 80%.
Scripting Engine
vRx’s scripting engine solves complex vulnerabilities, like log4j, with built-in or custom scripts.
Patchless Protection
vRx’s Patchless Protection secures vulnerable apps and reduces risk while maintaining functionality.

Automated Patching, Scripting, and more
Talk with our team to get a personal walkthrough
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.