Veeam released Backup & Replication 12.3.2 P4 (build 12.3.2.4934) with fixes for four reported vulnerabilities. The most severe, CVE-2025-64393, is rated 9.4 and concerns insecure deserialization in the Mount Service that can allow a low-privileged Backup Viewer to achieve remote code execution on a Veeam Backup Server.

The update also addresses a reflected cross-site scripting issue in Backup Enterprise Manager, an arbitrary-file-read issue affecting certain Cloud Connect deployments, and an authorization-related configuration-data exposure. The reported issues have differing prerequisites, so defenders should map the advisory to their deployed Veeam components and account roles.

Backup infrastructure is a high-value target during intrusion and ransomware activity. Organizations should prioritize the vendor update, limit privileged access to backup systems, and review service and portal accounts for unnecessary roles while confirming that production deployments are on the fixed build.

Source: Cyber Security News report on the Veeam release

By Allan