Backup & Replication
12 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Backup & Replication, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
Backup & Replication CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 8 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 12 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High7
- Medium3
- Low1
Latest CVEs
The 12 most recently published vulnerabilities affecting Backup & Replication.
- CVE-2024-45204A vulnerability exists where a low-privileged user can exploit insufficient permissions in credential handling to leak NTLM hashes of saved credentials. The exploitation involves using retrieved cr...4.3
- CVE-2024-42453A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify configurations on connected virtual infrastructure hosts. This includes the ability to power off virtual...8.1
- CVE-2024-42455A vulnerability in Veeam Backup & Replication allows a low-privileged user to connect to remoting services and exploit insecure deserialization by sending a serialized temporary file collection. Th...8.1
- CVE-2024-42457A vulnerability in Veeam Backup & Replication allows users with certain operator roles to expose saved credentials by leveraging a combination of methods in a remote management interface. This can ...6.5
- CVE-2024-42456A vulnerability in Veeam Backup & Replication platform allows a low-privileged user with a specific role to exploit a method that updates critical configuration settings, such as modifying the trus...8.8
- CVE-2024-42451A vulnerability in Veeam Backup & Replication allows low-privileged users to leak all saved credentials in plaintext. This is achieved by calling a series of methods over an external protocol, ulti...6.5
- CVE-2024-42452A vulnerability in Veeam Backup & Replication allows a low-privileged user to start an agent remotely in server mode and obtain credentials, effectively escalating privileges to system-level access...8.8
- CVE-2024-40717A vulnerability in Veeam Backup & Replication allows a low-privileged user with certain roles to perform remote code execution (RCE) by updating existing jobs. These jobs can be configured to run p...8.8
- CVE-2024-29850Veeam Backup Enterprise Manager allows account takeover via NTLM relay.8.8
- CVE-2024-29851Veeam Backup Enterprise Manager allows high-privileged users to steal NTLM hash of Enterprise manager service account.7.2
- CVE-2024-29852Veeam Backup Enterprise Manager allows high-privileged users to read backup session logs.2.7
- CVE-2024-29849Veeam Backup Enterprise Manager allows unauthenticated users to log in as any user to enterprise manager web interface.9.8
Product grouping is registry-driven, with AI assist and human review. How it works