CERT-FR flags multiple Veeam vulnerabilities
CERT-FR advisory details multiple vulnerabilities in Veeam Service Provider Console and Veeam ONE allowing RCE, privilege escalation, and denial of service.
CERT-FR issued an advisory covering multiple vulnerabilities affecting Veeam Service Provider Console (versions prior to 9.3.0.35057) and Veeam ONE (versions prior to 13.1.0.7034). The flaws span a range of impacts including remote code execution, privilege escalation, remote denial of service, SQL injection, security policy bypass, and confidentiality breaches, as documented across ten distinct CVEs referenced in Veeam's own security bulletins kb4892 and kb4893, published in late July and early August 2026 respectively.
No evidence of active exploitation is mentioned in the advisory; it is a vendor-driven patch notification distributed by CERT-FR to inform affected organizations. Administrators running the impacted Veeam products should consult the vendor bulletins and apply the available patches to remediate the identified issues.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0968
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free