← Back

CVE-2022-26503

nvd nist
Published: Mar 17, 2022Modified: Jun 17, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

Deserialization of untrusted data in Veeam Agent for Windows 2.0, 2.1, 2.2, 3.0.2, 4.x, and 5.x allows local users to run arbitrary code with local system privileges.

Affected (6)

Products: Veeam: Veeam
1 product
Veeam
Configuration A
6 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Veeam
From 4.0.0 to 4.0.2.2208
From 5.0.0 to 5.0.3.4708
Version 2.0
Version 2.1
Version 2.2
Version 3.0.2
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (4)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.