CVE-2026-21669
- EPSS 0.26%
- Veröffentlicht 12.03.2026 15:09:39
- Zuletzt bearbeitet 31.03.2026 13:17:22
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.
CVE-2026-21668
- EPSS 0.03%
- Veröffentlicht 12.03.2026 15:09:39
- Zuletzt bearbeitet 31.03.2026 13:17:28
A vulnerability allowing an authenticated domain user to bypass restrictions and manipulate arbitrary files on a Backup Repository.
CVE-2026-21667
- EPSS 0.3%
- Veröffentlicht 12.03.2026 15:09:39
- Zuletzt bearbeitet 31.03.2026 01:01:37
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.
CVE-2026-21666
- EPSS 0.3%
- Veröffentlicht 12.03.2026 15:09:39
- Zuletzt bearbeitet 31.03.2026 01:02:57
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.
CVE-2025-48984
- EPSS 0.32%
- Veröffentlicht 30.10.2025 23:31:34
- Zuletzt bearbeitet 11.11.2025 02:08:57
A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.
CVE-2024-45204
- EPSS 0.16%
- Veröffentlicht 04.12.2024 02:15:05
- Zuletzt bearbeitet 24.04.2025 16:59:33
A vulnerability exists where a low-privileged user can exploit insufficient permissions in credential handling to leak NTLM hashes of saved credentials. The exploitation involves using retrieved credentials to expose sensitive NTLM hashes, impacting ...
CVE-2024-42457
- EPSS 0.19%
- Veröffentlicht 04.12.2024 02:15:05
- Zuletzt bearbeitet 24.04.2025 17:08:34
A vulnerability in Veeam Backup & Replication allows users with certain operator roles to expose saved credentials by leveraging a combination of methods in a remote management interface. This can be achieved using a session object that allows for cr...
CVE-2024-42456
- EPSS 0.21%
- Veröffentlicht 04.12.2024 02:15:05
- Zuletzt bearbeitet 24.04.2025 17:09:48
A vulnerability in Veeam Backup & Replication platform allows a low-privileged user with a specific role to exploit a method that updates critical configuration settings, such as modifying the trusted client certificate used for authentication on a s...
CVE-2024-42452
- EPSS 0.08%
- Veröffentlicht 04.12.2024 02:15:04
- Zuletzt bearbeitet 24.04.2025 17:20:29
A vulnerability in Veeam Backup & Replication allows a low-privileged user to start an agent remotely in server mode and obtain credentials, effectively escalating privileges to system-level access. This allows the attacker to upload files to the ser...
CVE-2024-42455
- EPSS 4.75%
- Veröffentlicht 04.12.2024 02:15:04
- Zuletzt bearbeitet 24.04.2025 17:10:10
A vulnerability in Veeam Backup & Replication allows a low-privileged user to connect to remoting services and exploit insecure deserialization by sending a serialized temporary file collection. This exploit allows the attacker to delete any file on ...