CVE-2025-48983: Critical severity Veeam Backup & Replication vulnerability
Published Oct 30, 2025
·Updated
A vulnerability in the Mount service of Veeam Backup & Replication, which allows for remote code execution (RCE) on the Backup infrastructure hosts by an authenticated domain user.
Affected Software
2 affected components
Veeam Backup & Replication
Veeam Veeam Backup \& Replication>=12.0.0.1402<12.3.2.4165
Event History
Oct 30, 2025
CVE Published
via MITRE·11:33 PM
Data Sourced
via MITRE·11:33 PM
DescriptionSeverity
Oct 31, 2025
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-48983?
CVE-2025-48983 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2025-48983?
To remediate CVE-2025-48983, ensure that you apply the latest security patches provided by Veeam for Backup & Replication.
3
What software is affected by CVE-2025-48983?
CVE-2025-48983 specifically impacts Veeam Backup & Replication's Mount service.
4
Who can exploit CVE-2025-48983?
CVE-2025-48983 can be exploited by an authenticated domain user with access to the Backup infrastructure hosts.
5
What are the consequences of CVE-2025-48983?
Exploitation of CVE-2025-48983 can lead to unauthorized remote code execution on vulnerable systems.