Vulnerabilities in VEEAM
86 resultsVexday analysis
A Veeam apresenta um perfil de risco contido com apenas 2 vulnerabilidades registradas, ambas críticas, mas nenhuma sob exploração ativa conhecida. A fraqueza dominante (CWE-502 - desserialização insegura) é típica de plataformas de backup complexas, porém sem incidentes de ataque documentados até o momento. O risco é historicamente estável, sem descobertas recentes nos últimos 90 dias.
CVE-2024-45207HIGHDLL injection in Veeam Agent for Windows can occur if the system's PATH variable includes insecure locations. When the agent runs, it searchEPSS 0.2%CVE-2026-21709MEDIUMA vulnerability allowing a local attacker with administrator privileges to bypass Windows Driver Signature Enforcement.EPSS 0.2%CVE-2025-48982HIGHThis vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation if a system administrator is tricked into restEPSS 0.2%CVE-2026-32996HIGHThis vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation.EPSS 0.2%CVE-2026-56844HIGHA vulnerability in the Veeam Updater component of the Veeam Software Appliance that could allow a local user to elevate their privileges andEPSS 0.1%CVE-2026-64634HIGHA vulnerability allowing local privilege escalation to the Reporter service context.EPSS 0.1%