CVE-2026-32997: High severity Veeam Veeam Backup & Replication vulnerability
Published May 28, 2026
·Updated
A vulnerability allowing an authenticated user with the Backup Administrator role to write arbitrary files on Linux-based Veeam Backup & Replication server.
Affected Software
1 affected component
Veeam Veeam Backup & Replication
Event History
May 28, 2026
CVE Published
via MITRE·04:01 AM
Data Sourced
via MITRE·04:01 AM
DescriptionWeakness
Data Sourced
via NVD·05:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-32997?
CVE-2026-32997 has a high severity score of 8.6.
2
How do I fix CVE-2026-32997?
To address CVE-2026-32997, update your Veeam Backup & Replication software to the latest version provided by Veeam.
3
Who is affected by CVE-2026-32997?
CVE-2026-32997 affects users with the Backup Administrator role on Linux-based Veeam Backup & Replication servers.
4
What type of vulnerability is CVE-2026-32997?
CVE-2026-32997 is a file write vulnerability that allows authenticated users to write arbitrary files.
5
When was CVE-2026-32997 published?
CVE-2026-32997 was published on May 28, 2026.