CVE-2026-64634
- EPSS 0.11%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 05.08.2026 05:17:06
A vulnerability allowing local privilege escalation to the Reporter service context.
- EPSS 0.37%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 05.08.2026 05:17:05
A vulnerability allowing remote unauthenticated code execution on the agent host.
CVE-2026-64631
- EPSS 0.27%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 04.08.2026 18:16:56
A vulnerability allowing a low-privileged user to inject SQL and extract database contents.
CVE-2026-64630
- EPSS 0.24%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 04.08.2026 18:16:56
A vulnerability allowing a low-privileged user to retrieve report data outside the scope of a shared report link.
CVE-2026-58075
- EPSS 0.28%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 05.08.2026 14:17:08
A vulnerability allowing an unauthenticated attacker to read arbitrary files from the host, which can be further leveraged toescalate privileges locally.
CVE-2026-58074
- EPSS 0.35%
- Veröffentlicht 04.08.2026 15:56:03
- Zuletzt bearbeitet 05.08.2026 05:17:02
A vulnerability allowing a high-privileged user to execute arbitrary code on the server.
CVE-2024-42022
- EPSS 0.28%
- Veröffentlicht 07.09.2024 17:15:14
- Zuletzt bearbeitet 28.04.2025 16:51:48
An incorrect permission assignment vulnerability allows an attacker to modify product configuration files.
CVE-2024-42024
- EPSS 1.25%
- Veröffentlicht 07.09.2024 17:15:14
- Zuletzt bearbeitet 28.04.2025 16:47:40
A vulnerability that allows an attacker in possession of the Veeam ONE Agent service account credentials to perform remote code execution on the machine where the Veeam ONE Agent is installed.
CVE-2024-42023
- EPSS 0.47%
- Veröffentlicht 07.09.2024 17:15:14
- Zuletzt bearbeitet 28.04.2025 16:49:06
An improper access control vulnerability allows low-privileged users to execute code with Administrator privileges remotely.
CVE-2024-42021
- EPSS 0.3%
- Veröffentlicht 07.09.2024 17:15:14
- Zuletzt bearbeitet 28.04.2025 16:54:23
An improper access control vulnerability allows an attacker with valid access tokens to access saved credentials.