logo

Veeam warns of critical RCE flaw in Backup & Replication software

ID: 0b845b31-7e49-5e9f-9420-604f83a629a9

STIX ID: report--0b845b31-7e49-5e9f-9420-604f83a629a9

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2024-09-05

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Veeam published a September 2024 bulletin addressing 18 high/critical vulnerabilities across Veeam Backup & Replication, Service Provider Console, and Veeam ONE — including a critical unauthenticated RCE (CVE-2024-40711, CVSS 9.8) that can enable full system takeover and compromise backups; patches are available and organizations should upgrade immediately due to the high risk of backup theft or deletion and prior targeting by ransomware groups.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.