Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Vulnerabilities

Several Code Execution Flaws Patched in Veeam Backup & Replication

Four vulnerabilities have been fixed in the latest release of Veeam Backup & Replication.

Vulnerabilities

Veeam announced on Tuesday that an update released for its Backup & Replication solution patches several vulnerabilities that can be exploited for remote code execution. 

The security holes impact Veeam Backup & Replication 13.0.1.180 and earlier, and they have been fixed with the release of version 13.0.1.1071

One of the vulnerabilities is CVE-2025-59470, which can be exploited by an attacker with ‘backup’ or ‘tape operator’ privileges for remote code execution as the ‘postgres’ user by leveraging specially crafted parameters.

The flaw has a critical severity based on its CVSS score, but Veeam adjusted the severity to high because the roles required for exploitation are considered highly privileged. 

A high severity rating has also been assigned to CVE-2025-55125, which allows an attacker with ‘tape operator’ or ‘backup’ privileges to execute arbitrary code as root using malicious backup configuration files.

CVE-2025-59469, another high-severity issue, requires the same types of privileges and enables an attacker to write files to the system as root.

Advertisement. Scroll to continue reading.

The last vulnerability, CVE-2025-59468, allows an attacker with ‘backup administrator’ privileges to perform remote code execution.

All of these vulnerabilities were discovered internally by Veeam and there is no indication that they have been exploited in the wild.

However, it’s important for organizations to address the flaws, as it’s not uncommon for threat actors to target Veeam Backup & Replication in their attacks.

CISA’s Known Exploited Vulnerabilities (KEV) catalog includes four weaknesses found in the product in recent years, including CVE-2024-40711 and CVE-2023-27532, both exploited in ransomware attacks. 

Related: Veeam Patches Critical Vulnerability in Backup & Replication

Related: Code Execution Vulnerabilities Patched in Veeam, BeyondTrust Products

Related: Veeam Warns of Critical Vulnerability in Service Provider Console

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this live webinar as we explore if detection-first security operations can keep pace with AI, or if it’s time to rethink prevention as the strongest default.

Register

CodeSecCon bridges the gap between dev and security. Discover best practices for secure coding, innovative risk-reduction tools, and safe AI integration to cultivate a true DevSecOps culture. Safely secure your apps!

Register

People on the Move

PNC Financial Services Group has appointed Christian Winward as CISO.

Brian Gumbel has joined Armadin as Chief Revenue Officer.

EigenQ has appointed Mark Pecen as Vice Chairman and Alexander Truskovsky as CISO.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.