Veeam Backup & Replication
cpe:2.3:a:veeam:backup_&_replication:*:*:*:*:*:*:*
- <= 12.3.2.4165
- <= 13.0.1.1071
A vulnerability exists in Veeam Backup & Replication versions 12, 12.1, 12.2, 12.3, 12.3.1, and 12.3.2, as well as version 13.0.1.1071. This vulnerability allows a local attacker with administrator privileges to bypass Windows Driver Signature Enforcement, potentially leading to the installation of unsigned drivers or manipulation of driver behavior.
Exploitation of this vulnerability could allow for the installation of unsigned drivers or manipulation of driver behavior, which could be leveraged for malicious purposes, such as executing unauthorized code or creating persistent backdoors.
This vulnerability has been fixed in Veeam Backup & Replication versions 12.3.2.4465 and 13.0.1.2067.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.