CVE-2026-64632
- EPSS 0.21%
- Veröffentlicht 26.08.2026 21:21:41
- Zuletzt bearbeitet 03.09.2026 17:02:54
A vulnerability allowing a low-privileged user to capture the NTLM credentials of the Reporter service account.
CVE-2026-65641
- EPSS 0.54%
- Veröffentlicht 26.08.2026 21:21:40
- Zuletzt bearbeitet 09.09.2026 15:41:24
A vulnerability allowing an unauthenticated network attacker to coerce SMB authentication from the service account.
CVE-2026-64634
- EPSS 0.11%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 03.09.2026 17:09:18
A vulnerability allowing local privilege escalation to the Reporter service context.
- EPSS 0.37%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 03.09.2026 17:09:18
A vulnerability allowing remote unauthenticated code execution on the agent host.
CVE-2026-64631
- EPSS 0.27%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 03.09.2026 17:09:18
A vulnerability allowing a low-privileged user to inject SQL and extract database contents.
CVE-2026-64630
- EPSS 0.24%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 03.09.2026 17:09:18
A vulnerability allowing a low-privileged user to retrieve report data outside the scope of a shared report link.
CVE-2026-58075
- EPSS 0.28%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 03.09.2026 17:09:18
A vulnerability allowing an unauthenticated attacker to read arbitrary files from the host, which can be further leveraged toescalate privileges locally.
CVE-2026-58074
- EPSS 0.35%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 03.09.2026 17:09:18
A vulnerability allowing a high-privileged user to execute arbitrary code on the server.
CVE-2024-42023
- EPSS 0.47%
- Veröffentlicht 07.09.2024 17:15:14
- Zuletzt bearbeitet 28.04.2025 16:49:06
An improper access control vulnerability allows low-privileged users to execute code with Administrator privileges remotely.
CVE-2024-42024
- EPSS 1.25%
- Veröffentlicht 07.09.2024 17:15:14
- Zuletzt bearbeitet 28.04.2025 16:47:40
A vulnerability that allows an attacker in possession of the Veeam ONE Agent service account credentials to perform remote code execution on the machine where the Veeam ONE Agent is installed.