¡¾·ì϶¹«¸æ¡¿Veeam Backup & Replication Ô¶³Ì´úÂëÖ´Ðзì϶ (CVE-2025-23121)
°ä²¼¹¦·ò 2025-06-19Ò»¡¢¡¢·ì϶¸ÅÊö
·ì϶Ãû³Æ | Veeam Backup & ReplicationÔ¶³Ì´úÂëÖ´Ðзì϶ | ||
CVE ID | CVE-2025-23121 | ||
·ì϶ÀàÐÍ | RCE | ·¢ÏÖ¹¦·ò | 2025-06-19 |
·ì϶ÆÀ·Ö | 9.9 | ·ì϶µÈ¼¶ | ÑÏÖØ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | µÍ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | δ¹«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
Veeam Backup & ReplicationÊÇÒ»¿îÆóÒµ¼¶±¸·ÝºÍ¿àÄѸ´Ô½â¾ö¹æ»®£¬£¬ÖØÒªÓÃÓÚÐé¹¹»¯»·¾³ÖеÄÊý¾Ý±£»¤¡£¡£¡£ËüÖ§³ÖVMware vSphere¡¢¡¢Microsoft Hyper-VµÈÐ鹹ƽ̨£¬£¬Ìṩ¸ßЧµÄ±¸·Ý¡¢¡¢¸´Ô¡¢¡¢¸´ÖƼ°¼à¿ØÖ°ÄÜ¡£¡£¡£Veeam¿ÉÄܽøÐм´Ê±¸´Ô¡¢¡¢¿àÄѸ´ÔºÍÔÆ±¸·Ý£¬£¬Ô®ÊÖÆóҵȷ±£Êý¾Ý°²È«¡¢¡¢ÒµÎñÂ½ÐøÐԺͼ±¾ç¸´Ô¡£¡£¡£¸ÃÈí¼þÓµÓÐÇá±ãµÄÖÎÀí½çÃæ¡¢¡¢½Ã½ÝµÄ´æ´¢Ñ¡ÏîºÍ׳´óµÄ×Ô¶¯»¯Ö°ÄÜ£¬£¬ºÏÓÃÓÚ¸÷Àà¹æÄ£µÄÆóÒµ¡£¡£¡£
2025Äê6ÔÂ19ÈÕ£¬£¬OG¶«·½Ìü¼¯ÍÅVSRC¼à²âµ½veeam°ä²¼°²È«²¼¸æ£¬£¬Åû¶Veeam Backup & ReplicationÖеÄÒ»¸öÔ¶³Ì´úÂëÖ´Ðзì϶¡£¡£¡£¸Ã·ì϶ÔÊÐí¾¹ýÉí·ÝÑéÖ¤µÄÓòÓû§ÔÚVeeam Backup & Replication±¸·Ý·þÎñÆ÷ÉÏÖ´ÐÐÔ¶³Ì´úÂë¡£¡£¡£·ì϶ÆÀ·Ö9.9·Ö£¬£¬·ì϶¼¶±ðΪÑÏÖØ¡£¡£¡£
¶þ¡¢¡¢Ó°ÏìÁìÓò
Èý¡¢¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
½¨ÒéÉý¼¶Veeam Backup & Replication µ½12.3.2(build 12.3.2.3617)¡£¡£¡£
ÏÂÔØÁ´½Ó£ºhttps://www.veeam.com/kb4696/
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ