CVE-2026-58073: A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to impersonate a managed agent andobtain that agent's credentials.
A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to impersonate a managed agent andobtain that agent's credentials.
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-58073
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-58073 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for Veeam Service Provider
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- unknownCVE-2026-58072: A vulnerability in Veeam Service Provider Console allowing arbitrary file write on the managem…nvd · 2026-08-04
- unknownCVE-2026-58071: A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to acce…nvd · 2026-08-04
- unknownCVE-2026-58067: A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to exha…nvd · 2026-08-04
- mediumCVE-2026-64635: Improper handling of the returnUrl parameter in the Forgot Password function of Veeam Service …nvd · 2026-07-30
More from NVD Recent CVEs
- unknownCVE-2026-70474: Flowise is a drag-and-drop user interface for building customized large language model (LLM) f…2026-08-04
- unknownCVE-2026-70473: Flowise is a drag-and-drop user interface for building customized large language model (LLM) f…2026-08-04
- unknownCVE-2026-70472: Flowise is a drag & drop user interface to build a customized large language model flow. Prior…2026-08-04
- unknownCVE-2026-70471: Flowise is a drag-and-drop user interface for building customized large language model (LLM) f…2026-08-04
- mediumCVE-2026-69704: Atals-Livre contains a SQL injection vulnerability that allows attackers to manipulate databas…2026-08-04