logo

Veeam fixed critical Backup & Replication flaw CVE-2025-23120

ID: 23abc089-985b-5e71-81d1-5640f0e57c80

STIX ID: report--23abc089-985b-5e71-81d1-5640f0e57c80

Feed Name: Security Affairs

Threat Score
80/100

Date Published: 2025-03-20

Date Updated: 2026-04-22

Author: Pierluigi Paganini

...
...

Veeam published patches for a critical deserialization vulnerability (CVE-2025-23120, CVSS 9.9) in Backup & Replication that allows authenticated local or domain users to achieve remote code execution; the flaw impacts 12.3.0.310 and earlier 12.x builds and was remediated in version 12.3.1 (build 12.3.1.1139).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.