Veeam Backup & Replication
cpe:2.3:a:veeam:backup_&_replication:*:*:*:*:*:*:*
- <= 12.3.2.4165
A remote code execution vulnerability has been identified in Veeam Backup & Replication versions 12 and 13. This vulnerability allows a Backup Viewer to execute code remotely as the 'postgres' user. It affects both Windows-based Veeam Backup & Replication installations and Veeam Software Appliances.
Exploitation of this vulnerability allows for remote code execution on the affected system, with the executed code running under the 'postgres' user account.
This vulnerability has been fixed in Veeam Backup & Replication versions 12.3.2.4465 and 13.0.1.2067.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.