Vulnerability Details CVE-2026-21667
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.4%
CVSS Severity
CVSS v3 Score 9.9
Products affected by CVE-2026-21667
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.0.0.1402
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.0.0.1420
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.1.0.2131
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.1.1.56
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.1.2.172
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.2.0.334
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.3.0.310
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.3.1.1139
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.3.2.3617
-
cpe:2.3:a:veeam:veeam_backup_&_replication:12.3.2.4165