High severity8.8NVD Advisory· Published Mar 20, 2025· Updated Jun 17, 2026
CVE-2025-23120
CVE-2025-23120
Description
A vulnerability allowing remote code execution (RCE) for domain users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:veeam:veeam_backup_\&_replication:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:veeam:veeam_backup_\&_replication:*:*:*:*:*:*:*:*range: >=12.0.0.1402,<12.3.1.1139
- (no CPE)
- Veeam/Backup and Recoveryv5Range: 12.3
Patches
Vulnerability mechanics
References
2- labs.watchtowr.com/by-executive-order-we-are-banning-blacklists-domain-level-rce-in-veeam-backup-replication-cve-2025-23120/nvdExploitThird Party Advisory
- www.veeam.com/kb4724nvdVendor Advisory
News mentions
0No linked articles in our index yet.