CVE-2021-35971: Critical severity veeam backup & replication vulnerability
Published Jun 30, 2021
·Updated
Veeam Backup and Replication 10 before 10.0.1.4854 P20210609 and 11 before 11.0.0.837 P20210507 mishandles deserialization during Microsoft .NET remoting.
Affected Software
2 affected components
Veeam Veeam Backup \& Replication>=10.0<10.0.1.4854
Veeam Veeam Backup \& Replication>=11.0<11.0.0.837
Event History
Jun 30, 2021
CVE Published
via MITRE·02:28 PM
Data Sourced
via MITRE·02:28 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2021-35971.
2
What software versions are affected by this vulnerability?
Veeam Backup and Replication 10 before 10.0.1.4854 P20210609 and 11 before 11.0.0.837 P20210507.
3
What is the severity of CVE-2021-35971?
The severity of CVE-2021-35971 is critical with a score of 9.8.
4
How does this vulnerability affect the software?
This vulnerability allows for mishandling of deserialization during Microsoft .NET remoting.
5
Are there any references or resources related to this vulnerability?
Yes, you can refer to the following links: [Veeam Knowledge Base Article 4126](https://www.veeam.com/kb4126) and [Veeam Knowledge Base Article 4180](https://www.veeam.com/kb4180).