CVE-2026-58073: Critical severity Veeam Veeam Service Provider Console vulnerability
Published Aug 4, 2026
·Updated
A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to impersonate a managed agent andobtain that agent's credentials.
Affected Software
1 affected component
Veeam Veeam Service Provider Console
Event History
Aug 4, 2026
CVE Published
via MITRE·03:56 PM
Data Sourced
via MITRE·03:56 PM
DescriptionWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-58073?
The severity of CVE-2026-58073 is critical with a CVSS score of 9.5.
2
How do I fix CVE-2026-58073?
To fix CVE-2026-58073, ensure that you apply the latest updates and patches provided by Veeam for the Service Provider Console.
3
What type of attack is possible due to CVE-2026-58073?
CVE-2026-58073 allows an unauthenticated attacker to impersonate a managed agent and obtain the agent's credentials.
4
Who is affected by CVE-2026-58073?
CVE-2026-58073 affects users of the Veeam Service Provider Console.
5
What impact does CVE-2026-58073 have on security?
CVE-2026-58073 poses a significant security risk as it allows unauthorized access to sensitive credentials of managed agents.