CVE-2026-64632: Veeam One

High severity, CVSS 8.5. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability allowing a low-privileged user to capture the NTLM credentials of the Reporter service account.

Affected products

  • Veeam One: up to and including 13.0.2

Published 2026-08-26. Last modified 2026-09-03.