CVE-2026-21670Disclosure(veeam / veeam_backup_\&_replication)

LOWCVSS 6.5 · MEDIUM

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch veeam veeam_backup_\&_replication systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability allowing a low-privileged user to extract saved SSH credentials.

0.5/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-522

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • veeam_backup_\&_replication

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
veeam_backup_\&_replication

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-03-13: 3Patch / Workaround · 2026-03-13: 2Technical Details · 2026-03-13: 203-13
Signal classification3 categories
Disclosure
133.3%
General
133.3%
Patch
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • dbugs@ptdbugs
    Disclosure

    CVE: CVE-2026-21670 PT-Identifier: PT-2026-24956 Vendor: Veeam Product: Backup and Replication CVSS: 7.7 Credits: n/a Description: A vulnerability allowing a low-privileged user to extract saved SSH credentials. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-21670 • https://www.veeam.com/kb4831 #dbugs_vuln

    Post summary

    The post discloses CVE‑2026‑21670, a CVSS 7.7 flaw in Veeam Backup & Replication that let low‑privileged users retrieve stored SSH credentials, and cites a vendor advisory for remediation.

    0101167
    593 followersView on X
  • Autumn Good@autumn_good_35
    Patch

    🚨🚨🚨 CVE-2026-21669 CVE-2026-21670 CVE-2026-21671 CVE-2026-21672 CVE-2026-21708 KB4831: Vulnerabilities Resolved in Veeam Backup & Replication 13.0.1.2067 https://www.veeam.com/kb4831

    Post summary

    The tweet lists several CVEs and points to a Veeam KB article that offers a patch to resolve the associated vulnerabilities.

    00001330
    6.7K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-21670 A vulnerability allowing a low-privileged user to extract saved SSH credentials. https://www.cve.org/CVERecord?id=CVE-2026-21670

    Post summary

    The post briefly cites CVE‑2026‑21670, noting that a low‑privileged user can read stored SSH credentials, but offers no PoC, exploit code, active attack evidence, or mitigation details.

    00000155
    56.7K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appveeamveeam_backup_\&_replication---

Explore more