Agent For Windows
by Veeam
CVEs (5)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-48982 | Hig | 0.51 | 7.8 | 0.00 | Oct 31, 2025 | This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation if a system administrator is tricked into restoring a malicious file. | ||
| CVE-2024-29853 | Hig | 0.51 | 7.8 | 0.00 | May 22, 2024 | An authentication bypass vulnerability in Veeam Agent for Microsoft Windows allows for local privilege escalation. | ||
| CVE-2022-26503 | Hig | 0.51 | 7.8 | 0.01 | Mar 17, 2022 | Deserialization of untrusted data in Veeam Agent for Windows 2.0, 2.1, 2.2, 3.0.2, 4.x, and 5.x allows local users to run arbitrary code with local system privileges. | ||
| CVE-2026-32996 | Hig | 0.47 | — | 0.00 | May 28, 2026 | This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation. | ||
| CVE-2024-45207 | Hig | 0.46 | 7.0 | 0.00 | Dec 4, 2024 | DLL injection in Veeam Agent for Windows can occur if the system's PATH variable includes insecure locations. When the agent runs, it searches these directories for necessary DLLs. If an attacker places a malicious DLL in one of these directories, the Veeam Agent might load it… |
- risk 0.51cvss 7.8epss 0.00
This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation if a system administrator is tricked into restoring a malicious file.
- risk 0.51cvss 7.8epss 0.00
An authentication bypass vulnerability in Veeam Agent for Microsoft Windows allows for local privilege escalation.
- risk 0.51cvss 7.8epss 0.01
Deserialization of untrusted data in Veeam Agent for Windows 2.0, 2.1, 2.2, 3.0.2, 4.x, and 5.x allows local users to run arbitrary code with local system privileges.
- risk 0.47cvss —epss 0.00
This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation.
- risk 0.46cvss 7.0epss 0.00
DLL injection in Veeam Agent for Windows can occur if the system's PATH variable includes insecure locations. When the agent runs, it searches these directories for necessary DLLs. If an attacker places a malicious DLL in one of these directories, the Veeam Agent might load it…