logo

A Vulnerability in Veeam Backup & Replication Could Allow for Arbitrary Code Execution

ID: e12bcdfe-e4e2-52df-b468-d4cdca6c79c7

STIX ID: report--e12bcdfe-e4e2-52df-b468-d4cdca6c79c7

Feed Name: CISecurity.org Advisories

Threat Score
65/100

Date Published: 2025-03-21

Date Updated: 2026-04-27

...
...

A vulnerability (CVE-2025-23120) was identified in Veeam Backup & Replication that can enable remote code execution by authenticated domain users on domain-joined backup servers; Veeam warns domain-joined backups are against best practices but acknowledges the configuration may still be common, and successful exploitation could compromise backup data and images.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.