CVE-2025-23082: Veeam Backup
High severity, CVSS 7.2. EPSS: 0.3% chance of exploitation in the next 30 days.
Veeam Backup for Microsoft Azure is vulnerable to Server-Side Request Forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Affected products
- Veeam Backup: from 7.0.0.467, before 7.1.0.59 (fixed in 7.1.0.59)
Published 2025-01-14. Last modified 2026-06-17.