Source: Ministry of education information & communication security contingency platform
Publication Number | TACERT-ANA-2025062001065151 | Publication Time | 2025/06/20 13:02 |
Incident Type | ANA-Vulnerability Alert | Discovery Time | 2025/06/20 13:02 |
Impact Level | Low | ||
[Subject] [Vulnerability Alert] Critical Security Vulnerability in Veeam Backup & Replication Software (CVE-2025-23121) |
|||
[Content] Forwarded from TWCERTCC-200-202506-00000014 Veeam Backup & Replication is a core backup software developed by Veeam. A recently published security advisory disclosed a critical vulnerability (CVE-2025-23121, CVSS: 9.9). This vulnerability allows domain-authenticated users to execute arbitrary code remotely on the backup server. Information Sharing Level: WHITE (Information content can be publicly disclosed) |
|||
[Affected Platform] Veeam Backup & Replication version 12.3.1.1139 and earlier |
|||
[Recommended Actions] Please update to Veeam Backup & Replication version 12.3.2 |
|||
[Reference] https://www.twcert.org.tw/tw/cp-169-10190-2974a-1.html |