CVE-2026-93026
- EPSS 0.3%
- Veröffentlicht 07.10.2026 08:49:04
- Zuletzt bearbeitet 07.10.2026 13:58:29
This vulnerability in Veeam Backup & Replication allows a Backup Viewer to modify the Enterprise Manager master key and stored antivirus update credentials.
CVE-2026-58069
- EPSS 0.37%
- Veröffentlicht 07.10.2026 08:48:56
- Zuletzt bearbeitet 07.10.2026 13:58:29
This vulnerability in Veeam Backup & Replication allows an authenticated Cloud Connect tenant to read arbitrary files on the service provider host.
CVE-2025-64393
- EPSS 0.36%
- Veröffentlicht 07.10.2026 08:48:49
- Zuletzt bearbeitet 08.10.2026 04:16:55
This vulnerability in Veeam Backup & Replication allows a Backup Viewer to execute arbitrary code as SYSTEM on the backup server.
CVE-2026-58070
- EPSS 0.12%
- Veröffentlicht 26.08.2026 21:21:41
- Zuletzt bearbeitet 03.09.2026 17:09:18
A vulnerability that records guest OS processing credentials in cleartext in a support log on the guest, allowing a user with read access to that log to recover privileged account credentials.
CVE-2026-56844
- EPSS 0.13%
- Veröffentlicht 22.07.2026 00:44:32
- Zuletzt bearbeitet 23.07.2026 18:27:07
A vulnerability in the Veeam Updater component of the Veeam Software Appliance that could allow a local user to elevate their privileges and gain root-level access to the underlying operating system.
CVE-2026-44963
- EPSS 2.35%
- Veröffentlicht 09.06.2026 22:27:01
- Zuletzt bearbeitet 23.07.2026 09:10:00
A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.
CVE-2026-32997
- EPSS 0.51%
- Veröffentlicht 28.05.2026 04:01:37
- Zuletzt bearbeitet 29.05.2026 15:39:34
A vulnerability allowing an authenticated user with the Backup Administrator role to write arbitrary files on Linux-based Veeam Backup & Replication server.
CVE-2026-32996
- EPSS 0.15%
- Veröffentlicht 28.05.2026 04:01:37
- Zuletzt bearbeitet 23.09.2026 04:17:43
This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation.
CVE-2026-21709
- EPSS 0.17%
- Veröffentlicht 17.04.2026 15:32:10
- Zuletzt bearbeitet 20.04.2026 16:16:41
A vulnerability allowing a local attacker with administrator privileges to bypass Windows Driver Signature Enforcement.
CVE-2026-21708
- EPSS 1.09%
- Veröffentlicht 12.03.2026 16:26:52
- Zuletzt bearbeitet 05.06.2026 19:43:02
A vulnerability allowing a Backup Viewer to perform remote code execution (RCE) as the postgres user.