CVE-2025-64393
- EPSS 0.36%
- Veröffentlicht 07.10.2026 08:48:49
- Zuletzt bearbeitet 08.10.2026 04:16:55
This vulnerability in Veeam Backup & Replication allows a Backup Viewer to execute arbitrary code as SYSTEM on the backup server.
CVE-2026-58070
- EPSS 0.12%
- Veröffentlicht 26.08.2026 21:21:41
- Zuletzt bearbeitet 03.09.2026 17:09:18
A vulnerability that records guest OS processing credentials in cleartext in a support log on the guest, allowing a user with read access to that log to recover privileged account credentials.
CVE-2026-56844
- EPSS 0.13%
- Veröffentlicht 22.07.2026 00:44:32
- Zuletzt bearbeitet 23.07.2026 18:27:07
A vulnerability in the Veeam Updater component of the Veeam Software Appliance that could allow a local user to elevate their privileges and gain root-level access to the underlying operating system.
CVE-2026-44963
- EPSS 2.35%
- Veröffentlicht 09.06.2026 22:27:01
- Zuletzt bearbeitet 23.07.2026 09:10:00
A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.
CVE-2026-32997
- EPSS 0.51%
- Veröffentlicht 28.05.2026 04:01:37
- Zuletzt bearbeitet 29.05.2026 15:39:34
A vulnerability allowing an authenticated user with the Backup Administrator role to write arbitrary files on Linux-based Veeam Backup & Replication server.
CVE-2026-21669
- EPSS 1.17%
- Veröffentlicht 12.03.2026 15:09:39
- Zuletzt bearbeitet 10.05.2026 14:16:47
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.
CVE-2026-21668
- EPSS 0.51%
- Veröffentlicht 12.03.2026 15:09:39
- Zuletzt bearbeitet 10.05.2026 14:16:46
A vulnerability allowing an authenticated domain user to bypass restrictions and manipulate arbitrary files on a Backup Repository.
CVE-2026-21667
- EPSS 1.13%
- Veröffentlicht 12.03.2026 15:09:39
- Zuletzt bearbeitet 31.03.2026 01:01:37
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.
CVE-2026-21666
- EPSS 1.13%
- Veröffentlicht 12.03.2026 15:09:39
- Zuletzt bearbeitet 31.03.2026 01:02:57
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.
CVE-2025-48984
- EPSS 1.01%
- Veröffentlicht 30.10.2025 23:31:34
- Zuletzt bearbeitet 07.10.2026 21:10:00
A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.