Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

CISA warns about the active exploitation of vulnerability of the Linux kernel escalation

June 18, 2025

Ex-Analytics-Tsru, sentenced to 37 months for leaks of secret documents on national protection

June 18, 2025

Iran slows the Internet to prevent cyber -napades against the background of escalation of regional conflict

June 18, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » RCE Critical Error RCE Rate 9.9 CVSS in Backup and Replication
Global Security

RCE Critical Error RCE Rate 9.9 CVSS in Backup and Replication

AdminBy AdminJune 18, 2025No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


June 18, 2025Red LakshmananVulnerability / data protection

Veeam has deployed patches to contain a critical security deficiency that affects its backup software and replication, which could lead to a remote code under certain conditions.

Security defect, tracked as CVE-2025-23121, carries the CVSS 9.9 with a maximum of 10.0.

“The vulnerability that allows you to execute the deleted code (RCE) on the backup server Authorized User Domain,” Company – Note In advisory.

CVE-2025-23121 affects all previous versions of the 12 assembly, including 12.3.1139. It was considered in the version 12.3.2 (assembly 12.3.3617). Safety Researchers in the WHITE GmbH and Watchtowr code were enrolled and the vulnerability report.

Cybersecurity

Cybersecurity Company Rapid7 noted that update is probably referring problem Total Code White at the end of March 2025Cve-2025-23120CVSS’s assessment: 9.9) you can bypass.

Also addressed to Veeam-still one drawback in the same product (CVE-2025-24286, CVSS Assessment: 7.2), which allows the user authentication with the role of the backup operator to change the work backup, which can lead to the code arbitrary.

The American company separately fixed the vulnerability that affected Veeam Agent for Microsoft Windows (CVE-2025-24287, CVSS: 6.1), which allows local users to change the contents of the catalog, leading to high resolution code. The problem was recorded in the version 6.3.2 (assembly 6.3.1205).

According to Rapid7, More than 20% of responding cases to incident In 2024, it was either access or VEEAM’s exploitation when the threatening actor was already entrenched in the target.

With security deficiencies in Veeam Rackup software become the main goal for attackers In recent years, it is very important that customers are updated to the latest software with immediate effect.

Found this article interesting? Keep track of us further Youter  and LinkedIn To read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

CISA warns about the active exploitation of vulnerability of the Linux kernel escalation

June 18, 2025

Ex-Analytics-Tsru, sentenced to 37 months for leaks of secret documents on national protection

June 18, 2025

Iran slows the Internet to prevent cyber -napades against the background of escalation of regional conflict

June 18, 2025

Google Chrome Zero-Day Cve-2025-2783 is operated by Taxoff to expand Trinper Backdoor

June 17, 2025

Langsmith Bug can expose the Openai keys and users’ data through malicious agents

June 17, 2025

How to protect backups

June 17, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

CISA warns about the active exploitation of vulnerability of the Linux kernel escalation

June 18, 2025

Ex-Analytics-Tsru, sentenced to 37 months for leaks of secret documents on national protection

June 18, 2025

Iran slows the Internet to prevent cyber -napades against the background of escalation of regional conflict

June 18, 2025

RCE Critical Error RCE Rate 9.9 CVSS in Backup and Replication

June 18, 2025

Google Chrome Zero-Day Cve-2025-2783 is operated by Taxoff to expand Trinper Backdoor

June 17, 2025

Langsmith Bug can expose the Openai keys and users’ data through malicious agents

June 17, 2025

How to protect backups

June 17, 2025

Silver Fox Apt has on target Taiwan with sophisticated GH0Stcringe and Holdinghands Rats Malicious Programs

June 17, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

CISA warns about the active exploitation of vulnerability of the Linux kernel escalation

June 18, 2025

Ex-Analytics-Tsru, sentenced to 37 months for leaks of secret documents on national protection

June 18, 2025

Iran slows the Internet to prevent cyber -napades against the background of escalation of regional conflict

June 18, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.