CVE-2026-56844

high Veeam
CVSS v3 Base Score
8.4
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.1%
Exploitation probability in 30 days
Top 97% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Published: July 22, 2026 (46 days ago)
Last Modified: July 22, 2026
Vendor: Veeam
Source: MITRE

Description

A vulnerability in the Veeam Updater component of the Veeam Software Appliance that could allow a local user to elevate their privileges and gain root-level access to the underlying operating system.

CWE

CWE-22

Affected Products

Veeam Backup and Replication

References