References https://www.veeam.com/kb4830 https://www.veeam.com/kb4831 https://www.veeam.com/kb4792 https://www.veeam.com/kb4743 https://www.greenbone.net/en/blog/patch-now-7-new-critical-vulnerabilities-in-veeam-backup-replication/ https://thehackernews.com/2026/03/veeam-patches-7-critical-backup.html https://app.opencve.io/cve/?vendor=veeam https://arcticwolf.com/resources/blog/multiple-authenticated-high-and-critical-vulnerabilities-veeam-backup-replication/ https://www.veeam.com/kb4693 https://www.isda.org.tw/2026/03/23/f77dfd7350dbeb26ace9ba0a962de4ab/ https://www.twcert.org.tw/tw/cp-169-10783-d40f5-1.html https://www.ithome.com.tw/news/174408
Related Vulnerabilities仁和兴业(深圳)软件有限公司仁和云ERPbackupexportall 接口存在任意文件读取漏洞PoCCVE-2026-12898: All-in-One WP Migration and Backup < 7.106 - Arbitrary Log File WritePoCCVE-2024-56064: WP SuperBackup <= 2.3.3 - Unauthenticated Arbitrary File Upload to RCEUniFi Access /api/ucore/backup/export 命令执行漏洞(CVE-2025-52665)指挥调度管理平台 /app/dbtool/db_backup_download.php 信息泄露漏洞PoCApache Solr /solr/db/replication 服务端请求伪造漏洞(CVE-2017-3164)PoCCVE-2023-6750: WordPress WP Clone <= 2.4.2 - Database Backup ExposurePoCCVE-2023-7165: JetBackup <= 2.0.9.7 - Sensitive Information Exposure via Directory ListingD-Link DNS-ShareCenter /cgi-bin/remote_backup.cgi 命令执行漏洞(CVE-2026-4196)PoCCVE-2026-1357: WPvivid Backup & Migration <= 0.9.123 - Arbitrary File UploadNginx UI /api/backup 未授权访问漏洞(CVE-2026-27944)PoCsweetrice-backup-disclosure: SweetRice CMS 1.5.1 - Backup DisclosurePoCovhcloud-backup-config: OVHcloud Backup Configuration - Exposure