Quantcast
Channel: R&D Forums
Viewing all articles
Browse latest Browse all 9996

Veeam Backup & Replication • Re: CVE-2025-23121 kb4743 Clarification

$
0
0
Yes i'm aware of the best practice, but i asked about a temporary mitigation strategy given that it is already joined to prod domain and all other factors like patching/gpo & user config etc need to be considered before it's potential removal. https://labs.watchtowr.com/by-executive ... 025-23120/ suggests that the main issue is that any user account can pass the weak authentication check if domain users is a member of local users, my thinking being this check will fail if domain users is removed? Is also suggests that the fix have previously been simply updating a text file, which makes me wonder why it takes around an hour to apply

Statistics: Posted by chrisr — Jun 25, 2025 8:15 am



Viewing all articles
Browse latest Browse all 9996

Latest Images

Trending Articles



Latest Images