Veeam
Security Risk Profile
65
/100
highSecurity Risk Score
Comprehensive risk assessment based on 128 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 26, 2008 to present
128
Total CVEs
76
Critical+High
7
Exploited
72
Unpatched
Threat Assessment
Avg CVSS
8.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
72
Critical/High
Risk Level
65/100
high
⚠️ 7 Active Exploits🆕 9Fresh (<7d)📈 10 in Last 30 Days
Severity Distribution
Critical
32High
44Medium
8Low
2Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
4Age Distribution
Common Weaknesses (CWE)
1
Infoleak
5
2
XSS
5
3
Code Injection
4
4
Path Traversal
3
5
Command Injection
3
Most Affected Products
1. Veeam Veeam Backup \& Replication75
2. Veeam Backup & Replication52
3. Veeam Backup \& Replication36
4. VEEAM ONE33
5. VEEAM Veeam7
Recent Vulnerabilities
See more →CVE-2026-64635
CVSS 5.3medium
7/30/2026🔧 No Patch
CVE-2026-56844
CVSS 8.4high
7/22/2026🔧 No Patch
bleepingcomputer-20260609142756
unknown
New Veeam vulnerability exposes backup servers to RCE attacks
6/9/2026🔧 No Patch
CVE-2026-32998
CVSS 9.4critical
5/28/2026🔧 No Patch
CVE-2026-32996
CVSS 7.3high
5/28/2026🔧 No Patch
CVE-2026-32997
CVSS 8.6high
5/28/2026🔧 No Patch
https://reddit.com/r/cybersecurity/comments/1rs2xyp/cve202621666_cvss_99_critical_veeam_backup_rce/
unknown
🚨 CVE-2026-21666 (CVSS 9.9) – Critical Veeam Backup RCE Could Let Attackers Take Over Backup Servers
3/12/2026🔧 No Patch
CVE-2026-21708
CVSS 9.9critical
3/12/2026🔧 No Patch
CVE-2026-21672
CVSS 8.8high
3/12/2026🔧 No Patch
CVE-2026-21668
CVSS 8.8high
3/12/2026🔧 No Patch
Monitor Veeam in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.