Veeam

Backup & Replication

24 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.33%
  • Veröffentlicht 04.12.2024 02:15:04
  • Zuletzt bearbeitet 24.04.2025 17:11:34

A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify configurations on connected virtual infrastructure hosts. This includes the ability to power off virtual machines, delete files in storage, and make configur...

  • EPSS 14.01%
  • Veröffentlicht 04.12.2024 02:15:04
  • Zuletzt bearbeitet 24.04.2025 17:10:10

A vulnerability in Veeam Backup & Replication allows a low-privileged user to connect to remoting services and exploit insecure deserialization by sending a serialized temporary file collection. This exploit allows the attacker to delete any file on ...

  • EPSS 0.48%
  • Veröffentlicht 04.12.2024 02:15:04
  • Zuletzt bearbeitet 24.04.2025 17:20:29

A vulnerability in Veeam Backup & Replication allows a low-privileged user to start an agent remotely in server mode and obtain credentials, effectively escalating privileges to system-level access. This allows the attacker to upload files to the ser...

  • EPSS 0.28%
  • Veröffentlicht 04.12.2024 02:15:04
  • Zuletzt bearbeitet 24.04.2025 17:20:53

A vulnerability in Veeam Backup & Replication allows low-privileged users to leak all saved credentials in plaintext. This is achieved by calling a series of methods over an external protocol, ultimately retrieving the credentials using a malicious s...

  • EPSS 0.74%
  • Veröffentlicht 04.12.2024 02:15:04
  • Zuletzt bearbeitet 24.04.2025 17:21:39

A vulnerability in Veeam Backup & Replication allows a low-privileged user with certain roles to perform remote code execution (RCE) by updating existing jobs. These jobs can be configured to run pre- and post-scripts, which can be located on a netwo...

  • EPSS 0.61%
  • Veröffentlicht 07.11.2024 17:15:08
  • Zuletzt bearbeitet 11.07.2025 13:57:02

A vulnerability in Veeam Backup & Replication Enterprise Manager has been identified, which allows attackers to perform authentication bypass. Attackers must be able to perform Man-in-the-Middle (MITM) attack to exploit this vulnerability.

  • EPSS 0.34%
  • Veröffentlicht 07.09.2024 17:15:13
  • Zuletzt bearbeitet 01.05.2025 18:17:19

An improper certificate validation vulnerability in TLS certificate validation allows an attacker on the same network to intercept sensitive credentials during restore operations.

  • EPSS 0.32%
  • Veröffentlicht 07.09.2024 17:15:13
  • Zuletzt bearbeitet 01.05.2025 18:17:17

A vulnerability that allows a user who has been assigned a low-privileged role within Veeam Backup & Replication to alter Multi-Factor Authentication (MFA) settings and bypass MFA.

  • EPSS 0.29%
  • Veröffentlicht 07.09.2024 17:15:13
  • Zuletzt bearbeitet 01.05.2025 18:17:14

A path traversal vulnerability allows an attacker with a low-privileged account and local access to the system to perform local privilege escalation (LPE).

  • EPSS 1.12%
  • Veröffentlicht 07.09.2024 17:15:13
  • Zuletzt bearbeitet 01.05.2025 18:13:16

A series of related high-severity vulnerabilities, the most notable enabling remote code execution (RCE) as the service account and extraction of sensitive information (savedcredentials and passwords). Exploiting these vulnerabilities requires a user...