CVE-2026-21672: High severity Veeam Backup & Replication vulnerability
Published Mar 12, 2026
·Updated
A vulnerability allowing local privilege escalation on Windows-based Veeam Backup & Replication servers.
Affected Software
1 affected component
Veeam Backup & Replication
Event History
Mar 12, 2026
CVE Published
via MITRE·04:26 PM
Data Sourced
via MITRE·04:26 PM
DescriptionWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-21672?
CVE-2026-21672 has been classified as a high severity vulnerability.
2
How do I fix CVE-2026-21672?
To mitigate CVE-2026-21672, update to the latest version of Veeam Backup & Replication as provided by the vendor.
3
What are the potential impacts of CVE-2026-21672?
CVE-2026-21672 could allow an attacker to gain elevated privileges on affected Windows-based Veeam Backup & Replication servers.
4
Who is affected by CVE-2026-21672?
CVE-2026-21672 affects users of Veeam Backup & Replication running on Windows operating systems.
5
Is there a workaround for CVE-2026-21672?
Currently, the best approach is to apply the latest updates provided by Veeam, as there are no known workarounds.