A vulnerability has been reported in Veeam Backup & Replication which could be exploited by an authenticated domain user to execute arbitrary code on the targeted system.
Target Audience:
Enterprises and large Organizations, cloud service providers (CSPs), and backup administrators utilizing domain-joined Veeam Backup & Replication systems.
Risk Assessment:
Critical risk of remote code execution (RCE) resulting in potential compromise of backup infrastructure.
Impact Assessment:
Unauthorized code execution, backup data deletion or modification, and potential domain lateral movement.
The information provided herein is on "as is" basis, without warranty of any kind.