Veeam · Veeam B&R · CVE-2025-23121
**Name of the Vulnerable Software and Affected Versions**
Veeam Backup & Replication versions 12 through 12.3.2.3600
**Description**
A flaw in the input validation mechanism allows an authenticated domain user to achieve remote code execution (RCE) on the backup server. This issue specifically impacts backup servers that are joined to a Windows domain, enabling any user with valid domain credentials to execute arbitrary code. Real-world incidents involving RCE in this software have been targeted by ransomware groups such as Frag, Akira, Fog, Cuba, and FIN7.
**Recommendations**
Update to version 12.3.2.3617.