轉發 台灣電腦網路危機處理暨協調中心 資安訊息警訊 TWCERTCC-200-202606-00000010
[內容說明]
Veeam Backup & Replication是Veeam核心備份軟體,近日Veeam發布重大資安漏洞公告,此漏洞(CVE-2026-44963,CVSS 4.x:9.4)允許經身分驗證的網域使用者,在備份伺服器上執行遠端程式碼(RCE)。
[影響平台]
Veeam Backup & Replication 12.3.2.4465(含)之前12版本
[建議措施]
更新 Veeam Backup & Replication 至12.3.2.4854(含)之後版本
[參考資料]
1. https://www.twcert.org.tw/tw/cp-169-10960-7814d-1.html
Forwarded from Taiwan Computer Network Crisis Management and Coordination Center: Cybersecurity Alert TWCERTCC-200-202606-00000010
[Content Description]
Veeam Backup & Replication is Veeam's core backup software. Recently, Veeam released a major cybersecurity vulnerability announcement. This vulnerability (CVE-2026-44963, CVSS 4.x: 9.4) allows an authenticated domain user to execute remote code (RCE) on the backup server.
[Affected Platforms]
Veeam Backup & Replication versions 12.3.2.4465 and earlier (up to version 12)
[Recommended Action]
Update Veeam Backup & Replication to version 12.3.2.4854 or later (up to version 12)
[References]
1. https://www.twcert.org.tw/tw/cp-169-10960-7814d-1.html