CVE-2025-48984: Code Injection
A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-48984?
CVE-2025-48984 is classified as a critical vulnerability due to its potential to allow remote code execution by authenticated users.
How can I fix CVE-2025-48984?
To fix CVE-2025-48984, update your Veeam Backup & Replication software to at least version 12.3.2.4166 or the latest available version.
Who is affected by CVE-2025-48984?
CVE-2025-48984 affects authenticated domain users with access to Veeam Backup & Replication versions ranging from 12.0.0.1402 to 12.3.2.4165.
What are the risks associated with CVE-2025-48984?
The primary risk associated with CVE-2025-48984 is the potential for attackers to execute arbitrary code on the Backup Server.
What should I do if I cannot immediately patch CVE-2025-48984?
If you cannot patch CVE-2025-48984 immediately, limit user access and monitor your systems closely for any suspicious activity.