Vulnerabilità · 200 giorni fa
Veeam ha rilasciato aggiornamenti per Backup & Replication dopo la scoperta di più vulnerabilità, incluse quattro RCE critiche. Le falle permettono a utenti di dominio a basso privilegio e a ruoli Backup Viewer di eseguire codice sui server di backup; sono sette CVE corrette.
CVE in questo aggiornamento
7 CVE
5 critiche · 2 alte · 0 medie · 0 basse
0 in CISA KEV · 0 con EPSS sopra 1%
Severità più alta: CVE-2026-21666 · 9.9 CRITICAL
2 fonti che coprono questa storia
Veeam Patches 7 Critical Backup & Replication Flaws Allowing Remote Code Execution
Veeam fixes 7 Backup & Replication flaws, including CVSS 9.9 RCE bugs, warning attackers may exploit unpatched systems.
Veeam warns of critical flaws exposing backup servers to RCE attacks
Data protection company Veeam Software has patched multiple flaws in its Backup & Replication solution, including four critical remote code execution (RCE) vulnerabilities.
Part of the PlainSec briefing for 2026-03-14