Public Exploit Code Can Turn a Local Veeam User Into SYSTEM

The attacker already needs local code execution. The danger is converting a restricted foothold into the account that controls the Windows machine and its backups.

The attacker already needs local code execution. The danger is converting a restricted foothold into the account that controls the Windows machine and its backups.

Veeam ONE patches close a CVSS 10 unauthenticated RCE, arbitrary file read, SQL injection and a 9.3 flaw that can coerce SMB authentication.

After playing with Veeam 11 for a bit, I decided to get my Linux Docker physical host on the backup schedule. The hardware is getting older (Some would call it vintage or just plain ancient as it’s a 2nd gen…