CNNVD-202506-2543 Information

CNNVD ID

CNNVD-202506-2543

CVE-2025-24287

  • CNNVD Published: 2025-06-18

Description (Chinese)

Veeam Agent for Microsoft Windows是美国Veeam公司的一款用于物理机和虚拟机的数据保护与灾难恢复解决方案。 Veeam Agent for Microsoft Windows 6.3.1.1074及之前版本存在安全漏洞,该漏洞源于本地系统用户可修改目录内容,可能导致权限提升。

Description (English)

Veeam Agent for Microsoft Windows is a data protection and disaster recovery solution for physics and virtual machines in Veeam, United States. Veeam Agent for Microsoft Windows 6.3.1.1.1074 and earlier versions had a security loophole, which stemmed from local system users who could modify the contents of the directory, which could lead to enhanced privileges.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Veeam

Published

2025-06-18

Last Modified

2026-02-24

References

https://nvd.nist.gov/vuln/detail/CVE-2025-24287

Patch

https://www.veeam.com/kb2683

Share on: