MobbleOpen in Mobble ⇢
Technology · Cybersecurity · published 2026-10-08 · via SOCPrime

Veeam Patches Critical Code Execution Flaw in Backup & Replication

Image via SOCPrime
Image via SOCPrime

Veeam has issued a fix for CVE-2025-64393, a critical remote code execution flaw in Backup & Replication. The vulnerability has a CVSS 4.0 score of 9.4 and can be exploited by an authenticated user with the Backup Viewer role. It stems from insecure deserialization and could let such a user run arbitrary code on the Veeam Backup Server.

Expanded Detail

Veeam's update targets a severe flaw, CVE-2025-64393, in Backup & Replication. Rated 9.4 under CVSS 4.0, it allows a user already holding the Backup Viewer role to trigger remote code execution on the backup server. The root cause is unsafe handling of deserialized data through the Mount Service.

The fix arrived on October 6, 2026, as Backup & Replication 12.3.2 P4, build 12.3.2.4934. All 12.x releases through 12.3.2.4854 are affected, while version 13 is not vulnerable. Because backup systems hold sensitive recovery assets, exploitation could give attackers deeper access.

Context

Organizations that depend on Veeam backup infrastructure could face heightened risk if the flaw is exploited before patching. An attacker with the Backup Viewer role might reach recovery systems, credentials, or other sensitive resources, potentially disrupting restoration capabilities. This may affect IT and security teams, their customers, and broader service continuity. The practical impact could include costly incident response, data recovery delays, and reduced confidence in backup platforms, though timely updates and monitoring may limit exposure.

Expanded detail and Context are AI-generated analysis; the linked article remains the authoritative source.
Read the full article at SOCPrime →
Related stories
Atlassian patches critical unauthenticated file access bug across eight Data Center products · Cybersecurity
No Fix Yet for LMCache Flaw That Allows Unauthenticated Remote Code Execution · Cybersecurity
SonicWall Fixes Maximum-Severity SSRF Bug in SMA1000 Remote Access Appliances · Cybersecurity
This summary is Al-enhanced to contain extended analysis and broader social context. The original is {NAME); the linked article is the authoritative source. Original headline: “CVE-2025-64393: Critical Veeam Backup & Replication RCE Vulnerability.” Browse more stories.