High severity8.8NVD Advisory· Published Mar 17, 2022· Updated Jun 17, 2026
CVE-2022-26504
CVE-2022-26504
Description
Improper authentication in Veeam Backup & Replication 9.5U3, 9.5U4,10.x and 11.x component used for Microsoft System Center Virtual Machine Manager (SCVMM) allows attackers execute arbitrary code via Veeam.Backup.PSManager.exe
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
139.5U3, 9.5U4, 10.x, 11.x+ 12 more
- (no CPE)range: 9.5U3, 9.5U4, 10.x, 11.x
- cpe:2.3:a:veeam:veeam_backup_\&_replication:*:*:*:*:*:*:*:*range: >=10.0.0.4442,<10.0.1.4854
- cpe:2.3:a:veeam:veeam_backup_\&_replication:9.5.0.1536:*:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:9.5.4.2615:*:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:10.0.1.4854:-:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:10.0.1.4854:p20201202:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:10.0.1.4854:p20210609:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:10.0.1.4854:p20220304:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:11.0.1.1261:-:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:11.0.1.1261:p20211123:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:11.0.1.1261:p20211211:*:*:*:*:*:*
- cpe:2.3:a:veeam:veeam_backup_\&_replication:11.0.1.1261:p20220302:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
2- veeam.comnvdVendor Advisory
- www.veeam.com/kb4290nvdVendor Advisory
News mentions
0No linked articles in our index yet.