Veeam Backup & Replication Windows Driver Signature Enforcement Bypass Vulnerability

Vulnerability

A vulnerability exists in Veeam Backup & Replication versions 12, 12.1, 12.2, 12.3, 12.3.1, and 12.3.2, as well as version 13.0.1.1071. This vulnerability allows a local attacker with administrator privileges to bypass Windows Driver Signature Enforcement, potentially leading to the installation of unsigned drivers or manipulation of driver behavior.

Impact

Exploitation of this vulnerability could allow for the installation of unsigned drivers or manipulation of driver behavior, which could be leveraged for malicious purposes, such as executing unauthorized code or creating persistent backdoors.

Remediation

This vulnerability has been fixed in Veeam Backup & Replication versions 12.3.2.4465 and 13.0.1.2067.

Added: Apr 17, 2026, 4:41 PM
Updated: Apr 17, 2026, 4:41 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
0.8
exploitability
3.0
remediation
7.7
relevance
6.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.