CVE-2022-26503: High severity VEEAM Veeam vulnerability
Deserialization of untrusted data in Veeam Agent for Windows 2.0, 2.1, 2.2, 3.0.2, 4.x, and 5.x allows local users to run arbitrary code with local system privileges.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-26503?
CVE-2022-26503 is a vulnerability that allows local users to run arbitrary code with local system privileges in Veeam Agent for Windows 2.0, 2.1, 2.2, 3.0.2, 4.x, and 5.x.
Which software versions are affected by CVE-2022-26503?
Veeam Agent for Windows versions 2.0, 2.1, 2.2, 3.0.2, 4.x, and 5.x are affected by CVE-2022-26503.
What is the severity level of CVE-2022-26503?
CVE-2022-26503 has a severity level of 7.8 (High).
How can CVE-2022-26503 be exploited?
CVE-2022-26503 can be exploited by local users who have access to the affected Veeam Agent for Windows software, allowing them to run arbitrary code with local system privileges.
Are there any references for CVE-2022-26503?
Yes, you can find references for CVE-2022-26503 on the Veeam website (https://veeam.com) and in their knowledge base article (https://www.veeam.com/kb4289).