CVE-2026-21671Disclosure(veeam / veeam_backup_\&_replication)

LOWCVSS 9.1 · CRITICAL

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Patch veeam veeam_backup_\&_replication systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability allowing an authenticated user with the Backup Administrator role to perform remote code execution (RCE) in high availability (HA) deployments of Veeam Backup & Replication.

0.5/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-94CWE-693

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • veeam_backup_\&_replication

Threat summary

  • Patch or workaround signal is available
  • 6 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 6 classified signals
  • Peaked at 4 mentions on most recent observed day (2026-03-13)
  • 6 total mentions across 2 days

Affected systems

Vendors
Products
veeam_backup_\&_replication

Deep dive

Activity timeline6 mentions / 2d
01234Mentions · 2026-03-12: 2Mentions · 2026-03-13: 4Patch / Workaround · 2026-03-12: 1Patch / Workaround · 2026-03-13: 1Technical Details · 2026-03-12: 2Technical Details · 2026-03-13: 203-1203-13
Signal classification1 categories
Disclosure
6100.0%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-03-122
Disclosure2
2026-03-134
Disclosure4
Full discourse6 posts
  • Autumn Good@autumn_good_35
    Disclosure

    🚨🚨🚨 CVE-2026-21669 CVE-2026-21670 CVE-2026-21671 CVE-2026-21672 CVE-2026-21708 KB4831: Vulnerabilities Resolved in Veeam Backup & Replication 13.0.1.2067 https://www.veeam.com/kb4831

    Post summary

    The post announces several CVE identifiers and indicates that they are addressed in Veeam’s KB4831 patch 13.0.1.2067.

    00001330
    6.7K followersView on X
  • CERT-PY@CERTpy
    Disclosure

    ⚠️ Vulnerabilidades en productos Veeam ❗ CVE-2026-21708 ❗ CVE-2026-21671 ❗ CVE-2026-21669 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-veeam-5/ https://t.co/VOaE5dL6x3

    Post summary

    The tweet lists three CVEs affecting Veeam products and directs readers to external links for more information, but provides no technical details, PoC, or remediation guidance.

    00000106
    6.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-21671 A vulnerability allowing an authenticated user with the Backup Administrator role to perform remote code execution (RCE) in high availability (HA) deployments of Veea… https://www.cve.org/CVERecord?id=CVE-2026-21671

    Post summary

    The CVE describes an RCE vulnerability in Veea HA deployments that allows authenticated Backup Administrators to execute code; the post provides basic technical details but no proof‑of‑concept, exploit, or patch information.

    00000164
    56.7K followersView on X
  • dbugs@ptdbugs
    Disclosure

    CVE: CVE-2026-21671 PT-Identifier: PT-2026-24957 Vendor: Veeam Product: Software Appliance CVSS: 9.1 Credits: n/a Description: A vulnerability allowing an authenticated user with the Backup Administrator role to perform remote code execution (RCE) in high availability (HA) deployments of Veeam Backup & Replication. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-21671 • https://www.veeam.com/kb4831 #dbugs_vuln

    Post summary

    The text announces a high‑severity RCE vulnerability (CVE‑2026‑21671) in Veeam Backup & Replication HA deployments, providing basic technical details and references to vendor resources.

    0000066
    593 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-21671 - Critical A vulnerability allowing an authenticated user with the Backup Administrator role to perform remote code execution (RCE) in high availability (HA) deployments of Veeam Backup & Replication. https://www.thehackerwire.com/vulnerability/CVE-2026-21671/ https://t.co/gvkagFQzdX

    Post summary

    The post announces a critical RCE vulnerability (CVE‑2026‑21671) in Veeam Backup & Replication, noting that authenticated Backup Administrators can exploit it in HA setups, with a link to a detailed article.

    0000044
    134 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-21671: CRITICAL] Critical cyber security alert: Vulnerability in Veeam Backup & Replication enables RCE for users with Backup Administrator role in HA deployments. Stay vigilant and patch ASAP!#cve,CVE-2026-21671,#cybersecurity https://cvefind.com/CVE-2026-21671

    Post summary

    The tweet announces a newly identified critical Veeam Backup & Replication vulnerability (CVE‑2026‑21671) that allows RCE for Backup Administrator users in HA setups, urging users to patch promptly.

    0000069
    601 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appveeamveeam_backup_\&_replication---

Explore more