logo

New Veeam vulnerabilities expose backup servers to RCE attacks

ID: 0ff524fa-9a92-59ab-8a8c-885edec06035

STIX ID: report--0ff524fa-9a92-59ab-8a8c-885edec06035

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2026-01-07

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Veeam released security updates addressing multiple vulnerabilities in Backup & Replication—most notably CVE-2025-59470 (an RCE affecting v13.0.1.180 and earlier)—and recommends patching and role hardening; although Veeam downgraded the rating to high because exploitation requires Backup or Tape Operator privileges, the product’s widespread use and history of ransomware actors targeting VBR servers make timely remediation critical.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.