ZDI-25-649: Veeam Agent for Microsoft Windows Incorrect Default Permissions Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Veeam Agent for Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-24287.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-25-649?
The ZDI-25-649 vulnerability is classified as a privilege escalation vulnerability.
How do I fix ZDI-25-649?
To fix ZDI-25-649, apply the latest security updates or patches provided by Veeam for the Agent for Microsoft Windows.
Who is affected by ZDI-25-649?
ZDI-25-649 affects installations of Veeam Agent for Microsoft Windows that are running vulnerable versions.
Can ZDI-25-649 be exploited remotely?
No, ZDI-25-649 requires an attacker to have local access to the system to exploit the vulnerability.
What are the potential impacts of ZDI-25-649?
Exploiting ZDI-25-649 can allow local attackers to escalate their privileges, potentially compromising the system's integrity and security.