This vulnerability in Veeam Backup & Replication allows an authenticated Cloud Connect tenant to read arbitrary files on the service provider host.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.veeam.com/kb4902 |
|
History
Wed, 07 Oct 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Veeam
Veeam backup And Replication |
|
| Vendors & Products |
Veeam
Veeam backup And Replication |
Wed, 07 Oct 2026 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Authenticated Cloud Connect Tenant Can Read Arbitrary Files on Veeam Service Provider Host |
Wed, 07 Oct 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | This vulnerability in Veeam Backup & Replication allows an authenticated Cloud Connect tenant to read arbitrary files on the service provider host. | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2026-10-07T11:31:00.298Z
Reserved: 2026-06-28T15:00:00.720Z
Link: CVE-2026-58069
No data.
Status : Received
Published: 2026-10-07T09:17:05.550
Modified: 2026-10-07T09:17:05.550
Link: CVE-2026-58069
No data.
OpenCVE Enrichment
Updated: 2026-10-07T11:00:10Z
Weaknesses