Vulnerability index

Browse CVEs

64 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Veeam Backup \& Replication CRITICAL 9.9
CVE-2026-21708

A vulnerability allowing a Backup Viewer to perform remote code execution (RCE) as the postgres user.

Fix: 12.3.2.4465.+
Fix from $2,300 2026-03-12
Veeam Backup \& Replication CRITICAL 9.9
CVE-2026-21669

A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.

Fix: 13.0.1.2067+
Fix from $2,300 2026-03-12
Veeam Backup \& Replication CRITICAL 9.1
CVE-2026-21671

A vulnerability allowing an authenticated user with the Backup Administrator role to perform remote code execution (RCE) in high availability (HA) de…

Fix: after 13.0.1.1071
Fix from $2,300 2026-03-12
Veeam Backup \& Replication HIGH 8.8
CVE-2026-21666

A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.

Fix: 12.3.2.4465+
Fix from $1,950 2026-03-12
Veeam Backup \& Replication HIGH 8.8
CVE-2026-21667

A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.

Fix: 12.3.2.4465+
Fix from $1,950 2026-03-12
Veeam Backup \& Replication MEDIUM 6.5
CVE-2026-21668

A vulnerability allowing an authenticated domain user to bypass restrictions and manipulate arbitrary files on a Backup Repository.

Fix: 12.3.2.4465+
Fix from $1,600 2026-03-12
Veeam Backup \& Replication MEDIUM 6.5
CVE-2026-21670

A vulnerability allowing a low-privileged user to extract saved SSH credentials.

Fix: after 13.0.1.1071
Fix from $1,600 2026-03-12
Veeam Backup \& Replication CRITICAL 9.1
CVE-2025-59468

This vulnerability allows a Backup Administrator to perform remote code execution (RCE) as the postgres user by sending a malicious password paramet…

Fix: 13.0.1.1071+
Fix from $2,300 2026-01-08
Veeam Backup \& Replication CRITICAL 9.0
CVE-2025-59469

This vulnerability allows a Backup or Tape Operator to write files as root.

Fix: 13.0.1.1071+
Fix from $2,300 2026-01-08
Veeam Backup \& Replication CRITICAL 9.0
CVE-2025-59470

This vulnerability allows a Backup Operator to perform remote code execution (RCE) as the postgres user by sending a malicious interval or order para…

Fix: 13.0.1.1071+
Fix from $2,300 2026-01-08
Veeam Backup \& Replication CRITICAL 9.8
CVE-2025-55125

This vulnerability allows a Backup or Tape Operator to perform remote code execution (RCE) as root by creating a malicious backup configuration file.

Fix: 13.0.1.1071+
Fix from $2,300 2026-01-08
Veeam Backup \& Replication CRITICAL 9.9
CVE-2025-48983

A vulnerability in the Mount service of Veeam Backup & Replication, which allows for remote code execution (RCE) on the Backup infrastructure hosts b…

Fix: 12.3.2.4165+
Fix from $2,300 2025-10-31
Veeam Backup \& Replication HIGH 8.8
CVE-2025-48984

A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.

Fix: 12.3.2.4165+
Fix from $1,950 2025-10-31
Veeam Agent For Windows HIGH 7.8
CVE-2025-48982

This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation if a system administrator is tricked into restoring a m…

Fix: 6.3.2.1302+
Fix from $1,950 2025-10-31
Veeam Backup \& Replication HIGH 8.8
CVE-2025-23121EPSS 20%

A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user

Fix: 12.3.2.3617+
Fix from $1,950 2025-06-19
Veeam Backup \& Replication HIGH 8.8
CVE-2025-23120EPSS 22%

A vulnerability allowing remote code execution (RCE) for domain users.

Fix: 12.3.1.1139+
Fix from $1,950 2025-03-20
Backup HIGH 7.2
CVE-2025-23082

Veeam Backup for Microsoft Azure is vulnerable to Server-Side Request Forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized…

Fix: 7.1.0.59+
Fix from $1,950 2025-01-14
Veeam Backup \& Replication HIGH 8.8
CVE-2024-42456

A vulnerability in Veeam Backup & Replication platform allows a low-privileged user with a specific role to exploit a method that updates critical co…

Fix: 12.3.0.310+
Fix from $1,950 2024-12-04
Veeam Agent For Windows HIGH 7.0
CVE-2024-45207

DLL injection in Veeam Agent for Windows can occur if the system's PATH variable includes insecure locations. When the agent runs, it searches these …

Fix: 6.3.0.177+
Fix from $1,950 2024-12-04
Veeam Backup \& Replication MEDIUM 6.5
CVE-2024-42457

A vulnerability in Veeam Backup & Replication allows users with certain operator roles to expose saved credentials by leveraging a combination of met…

Fix: 12.3.0.310+
Fix from $1,600 2024-12-04
Veeam Service Provider Console MEDIUM 6.5
CVE-2024-45206

A vulnerability in Veeam Service Provider Console has been identified, which allows to perform arbitrary HTTP requests to arbitrary hosts of the netw…

Fix: 8.1.0.21377+
Fix from $1,600 2024-12-04
Veeam Backup \& Replication HIGH 8.8
CVE-2024-40717

A vulnerability in Veeam Backup & Replication allows a low-privileged user with certain roles to perform remote code execution (RCE) by updating exis…

Fix: 12.3.0.310+
Fix from $1,950 2024-12-04
Veeam Backup \& Replication HIGH 8.8
CVE-2024-42452

A vulnerability in Veeam Backup & Replication allows a low-privileged user to start an agent remotely in server mode and obtain credentials, effectiv…

Fix: 12.3.0.310+
Fix from $1,950 2024-12-04
Veeam Backup \& Replication HIGH 8.1
CVE-2024-42453

A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify configurations on connected virtual infrastructure hosts…

Fix: 12.3.0.310+
Fix from $1,950 2024-12-04
Veeam Backup \& Replication HIGH 8.1
CVE-2024-42455EPSS 15%

A vulnerability in Veeam Backup & Replication allows a low-privileged user to connect to remoting services and exploit insecure deserialization by se…

Fix: 12.3.0.310+
Fix from $1,950 2024-12-04
Veeam Backup \& Replication MEDIUM 6.5
CVE-2024-42451

A vulnerability in Veeam Backup & Replication allows low-privileged users to leak all saved credentials in plaintext. This is achieved by calling a s…

Fix: 12.3.0.310+
Fix from $1,600 2024-12-04
Veeam Backup \& Replication HIGH 7.7
CVE-2024-40715

A vulnerability in Veeam Backup & Replication Enterprise Manager has been identified, which allows attackers to perform authentication bypass. Attack…

Fix: 12.2.0.334+
Fix from $1,950 2024-11-07
One HIGH 8.8
CVE-2024-42023

An improper access control vulnerability allows low-privileged users to execute code with Administrator privileges remotely.

Fix: 12.2.0.4093+
Fix from $1,950 2024-09-07
One HIGH 8.8
CVE-2024-42024

A vulnerability that allows an attacker in possession of the Veeam ONE Agent service account credentials to perform remote code execution on the mach…

Fix: 12.2.0.4093+
Fix from $1,950 2024-09-07
One MEDIUM 6.5
CVE-2024-42021

An improper access control vulnerability allows an attacker with valid access tokens to access saved credentials.

Fix: 12.2.0.4093+
Fix from $1,600 2024-09-07