Vulnerability index

Browse CVEs

64 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.9 CVE-2026-21708 A vulnerability allowing a Backup Viewer to perform remote code execution (RCE) as the postgres user. Veeam Backup \& Replication 12.3.2.4465.+ Fix from $2,3002026-03-12 CRITICAL 9.9 CVE-2026-21669 A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server. Veeam Backup \& Replication 13.0.1.2067+ Fix from $2,3002026-03-12 CRITICAL 9.1 CVE-2026-21671 A vulnerability allowing an authenticated user with the Backup Administrator role to perform remote code execution (RCE) in high availability (HA) de… Veeam Backup \& Replication after 13.0.1.1071 Fix from $2,3002026-03-12 HIGH 8.8 CVE-2026-21666 A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server. Veeam Backup \& Replication 12.3.2.4465+ Fix from $1,9502026-03-12 HIGH 8.8 CVE-2026-21667 A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server. Veeam Backup \& Replication 12.3.2.4465+ Fix from $1,9502026-03-12 MEDIUM 6.5 CVE-2026-21668 A vulnerability allowing an authenticated domain user to bypass restrictions and manipulate arbitrary files on a Backup Repository. Veeam Backup \& Replication 12.3.2.4465+ Fix from $1,6002026-03-12 MEDIUM 6.5 CVE-2026-21670 A vulnerability allowing a low-privileged user to extract saved SSH credentials. Veeam Backup \& Replication after 13.0.1.1071 Fix from $1,6002026-03-12 CRITICAL 9.1 CVE-2025-59468 This vulnerability allows a Backup Administrator to perform remote code execution (RCE) as the postgres user by sending a malicious password paramet… Veeam Backup \& Replication 13.0.1.1071+ Fix from $2,3002026-01-08 CRITICAL 9.0 CVE-2025-59469 This vulnerability allows a Backup or Tape Operator to write files as root. Veeam Backup \& Replication 13.0.1.1071+ Fix from $2,3002026-01-08 CRITICAL 9.0 CVE-2025-59470 This vulnerability allows a Backup Operator to perform remote code execution (RCE) as the postgres user by sending a malicious interval or order para… Veeam Backup \& Replication 13.0.1.1071+ Fix from $2,3002026-01-08 CRITICAL 9.8 CVE-2025-55125 This vulnerability allows a Backup or Tape Operator to perform remote code execution (RCE) as root by creating a malicious backup configuration file. Veeam Backup \& Replication 13.0.1.1071+ Fix from $2,3002026-01-08 CRITICAL 9.9 CVE-2025-48983 A vulnerability in the Mount service of Veeam Backup & Replication, which allows for remote code execution (RCE) on the Backup infrastructure hosts b… Veeam Backup \& Replication 12.3.2.4165+ Fix from $2,3002025-10-31 HIGH 8.8 CVE-2025-48984 A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user. Veeam Backup \& Replication 12.3.2.4165+ Fix from $1,9502025-10-31 HIGH 7.8 CVE-2025-48982 This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation if a system administrator is tricked into restoring a m… Veeam Agent For Windows 6.3.2.1302+ Fix from $1,9502025-10-31 HIGH 8.8 CVE-2025-23121EPSS 20% A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user Veeam Backup \& Replication 12.3.2.3617+ Fix from $1,9502025-06-19 HIGH 8.8 CVE-2025-23120EPSS 22% A vulnerability allowing remote code execution (RCE) for domain users. Veeam Backup \& Replication 12.3.1.1139+ Fix from $1,9502025-03-20 HIGH 7.2 CVE-2025-23082 Veeam Backup for Microsoft Azure is vulnerable to Server-Side Request Forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized… Backup 7.1.0.59+ Fix from $1,9502025-01-14 HIGH 8.8 CVE-2024-42456 A vulnerability in Veeam Backup & Replication platform allows a low-privileged user with a specific role to exploit a method that updates critical co… Veeam Backup \& Replication 12.3.0.310+ Fix from $1,9502024-12-04 HIGH 7.0 CVE-2024-45207 DLL injection in Veeam Agent for Windows can occur if the system's PATH variable includes insecure locations. When the agent runs, it searches these … Veeam Agent For Windows 6.3.0.177+ Fix from $1,9502024-12-04 MEDIUM 6.5 CVE-2024-42457 A vulnerability in Veeam Backup & Replication allows users with certain operator roles to expose saved credentials by leveraging a combination of met… Veeam Backup \& Replication 12.3.0.310+ Fix from $1,6002024-12-04 MEDIUM 6.5 CVE-2024-45206 A vulnerability in Veeam Service Provider Console has been identified, which allows to perform arbitrary HTTP requests to arbitrary hosts of the netw… Veeam Service Provider Console 8.1.0.21377+ Fix from $1,6002024-12-04 HIGH 8.8 CVE-2024-40717 A vulnerability in Veeam Backup & Replication allows a low-privileged user with certain roles to perform remote code execution (RCE) by updating exis… Veeam Backup \& Replication 12.3.0.310+ Fix from $1,9502024-12-04 HIGH 8.8 CVE-2024-42452 A vulnerability in Veeam Backup & Replication allows a low-privileged user to start an agent remotely in server mode and obtain credentials, effectiv… Veeam Backup \& Replication 12.3.0.310+ Fix from $1,9502024-12-04 HIGH 8.1 CVE-2024-42453 A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify configurations on connected virtual infrastructure hosts… Veeam Backup \& Replication 12.3.0.310+ Fix from $1,9502024-12-04 HIGH 8.1 CVE-2024-42455EPSS 15% A vulnerability in Veeam Backup & Replication allows a low-privileged user to connect to remoting services and exploit insecure deserialization by se… Veeam Backup \& Replication 12.3.0.310+ Fix from $1,9502024-12-04 MEDIUM 6.5 CVE-2024-42451 A vulnerability in Veeam Backup & Replication allows low-privileged users to leak all saved credentials in plaintext. This is achieved by calling a s… Veeam Backup \& Replication 12.3.0.310+ Fix from $1,6002024-12-04 HIGH 7.7 CVE-2024-40715 A vulnerability in Veeam Backup & Replication Enterprise Manager has been identified, which allows attackers to perform authentication bypass. Attack… Veeam Backup \& Replication 12.2.0.334+ Fix from $1,9502024-11-07 HIGH 8.8 CVE-2024-42023 An improper access control vulnerability allows low-privileged users to execute code with Administrator privileges remotely. One 12.2.0.4093+ Fix from $1,9502024-09-07 HIGH 8.8 CVE-2024-42024 A vulnerability that allows an attacker in possession of the Veeam ONE Agent service account credentials to perform remote code execution on the mach… One 12.2.0.4093+ Fix from $1,9502024-09-07 MEDIUM 6.5 CVE-2024-42021 An improper access control vulnerability allows an attacker with valid access tokens to access saved credentials. One 12.2.0.4093+ Fix from $1,6002024-09-07