Veeam and IBM Release Patches for High-Risk Flaws in Backup and AIX Systems

To fix a serious security hole affecting its Backup & Replication software that might result in remote code execution, Veeam has published security upgrades.

The vulnerability has a CVSS score of 9.9 out of 10.0 and is tagged as CVE-2025-23120. 12.3.0.310 and all previous builds of version 12 are affected.

In a warning published on Wednesday, the company disclosed a vulnerability that permits authorized domain users to execute remote code (RCE).

The vulnerability was found and reported by Piotr Bazydlo, a security researcher with watchTowr, and has been fixed in version 12.3.1 (build 12.3.1.1139).

Bazydlo and researcher Sina Kheirkhah claim that Veeam’s uneven treatment of the deserialization read more about Veeam and IBM Release Patches for High-Risk Flaws in Backup and AIX Systems.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *