Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…

New Veeam vulnerability exposes backup servers to RCE attacks

0
Critical
Exploitremoterce
Published: Tue Jun 09 2026 (06/09/2026, 14:27:56 UTC)
Source: Bleeping Computer

Description

A critical remote code execution (RCE) vulnerability (CVE-2026-44963) affects Veeam Backup & Replication (VBR) versions up to 12. 3. 2. 4465. This flaw allows any authenticated domain user with low privileges to execute code remotely on domain-joined backup servers. The vulnerability is fixed in version 12. 3. 2. 4854 and does not affect version 13. x due to architectural changes.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 06/09/2026, 14:41:03 UTC

Technical Analysis

The vulnerability CVE-2026-44963 in Veeam Backup & Replication allows remote code execution on domain-joined backup servers by any authenticated domain user with low privileges. It affects all 12.x versions up to 12.3.2.4465 and was fixed in 12.3.2.4854. Version 13.x is not affected due to architectural changes. The flaw enables attackers to potentially execute arbitrary code on backup servers, which are often integrated into Windows domains. Veeam emphasizes the importance of patching promptly to prevent exploitation, noting that attackers typically reverse-engineer patches to develop exploits. Historically, Veeam backup servers have been targeted by ransomware groups to steal data and disrupt recovery efforts.

Potential Impact

Successful exploitation allows an authenticated domain user with low privileges to execute arbitrary code remotely on the backup server, potentially compromising backup integrity and enabling further network compromise. This elevates risk for data theft, ransomware attacks, and disruption of backup and recovery operations. The vulnerability affects domain-joined Veeam Backup & Replication servers running versions up to 12.3.2.4465. No active exploitation has been reported yet, but the critical nature and historical targeting of Veeam servers by ransomware groups underscore the severity.

Mitigation Recommendations

A security update fixing this vulnerability is available in Veeam Backup & Replication version 12.3.2.4854. Users should upgrade to this version or later immediately. Version 13.x and later are not affected due to architectural changes. Veeam strongly recommends applying the patch without delay to prevent exploitation. There are no indications that the vulnerability is mitigated by default or that no action is required.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Article Source
{"url":"https://www.bleepingcomputer.com/news/security/new-veeam-vulnerability-exposes-backup-servers-to-rce-attacks/","fetched":true,"fetchedAt":"2026-06-09T14:40:46.530Z","wordCount":693}

Threat ID: 6a2825ee8dd33fbd8542ae47

Added to database: 6/9/2026, 2:40:46 PM

Last enriched: 6/9/2026, 2:41:03 PM

Last updated: 6/9/2026, 10:35:33 PM

Views: 16

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses