Veeam Backup & Replication and Veeam Agent for Windows Remote Code Execution Vulnerability

Vulnerability

A remote code execution vulnerability has been identified in Veeam Backup & Replication versions 12.3.1.1139 and earlier, as well as in Veeam Agent for Microsoft Windows versions 6.3.1.1074 and earlier. This vulnerability allows an authenticated domain user to execute arbitrary code on the backup server. It is important to note that this issue only affects domain-joined backup servers.

Impact

Exploitation of this vulnerability allows for remote code execution on the backup server, with the executed code running in the context of the application.

Remediation

Users can upgrade to Veeam Backup & Replication 12.3.2 (build 12.3.2.3617) or Veeam Agent for Microsoft Windows 6.3.2 (build 6.3.2.1205) to address this vulnerability.

Added: Jun 19, 2025, 12:35 AM
Updated: Jun 19, 2025, 12:35 AM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
7.5
exploitability
4.9
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.