{"id":40210,"date":"2026-08-27T01:02:19","date_gmt":"2026-08-26T23:02:19","guid":{"rendered":"https:\/\/borncity.com\/win\/?p=40210"},"modified":"2026-08-27T01:02:19","modified_gmt":"2026-08-26T23:02:19","slug":"veeam-one-with-critical-vulnerability-cve-2026-65641-cvss-9-3","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2026\/08\/27\/veeam-one-with-critical-vulnerability-cve-2026-65641-cvss-9-3\/","title":{"rendered":"Veeam ONE with Critical Vulnerability CVE-2026-65641 (CVSS 9.3)"},"content":{"rendered":"<p><img decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline;\" title=\"Sicherheit (Pexels, allgemeine Nutzung)\" src=\"https:\/\/borncity.com\/blog\/wp-content\/uploads\/2021\/04\/Sicherheit_klein.jpg\" alt=\"Sicherheit (Pexels, allgemeine Nutzung)\" width=\"200\" align=\"left\" \/>[<a href=\"https:\/\/borncity.com\/blog\/2026\/08\/27\/veeam-one\/\" target=\"_blank\" rel=\"noopener\">German<\/a>]A brief update for users and administrators who rely on Veeam ONE. There is a critical vulnerability, CVE-2026-65641 (CVSS 9.3), in Veeam ONE that could potentially expose login credentials. Veeam ONE should therefore be updated immediately to versions 13.1.0.7233 or 13.0.2.7159.<\/p>\n<p><!--more--><\/p>\n<p>I came across the information that Veeam published on August 25, 2026, in security advisory <a href=\"https:\/\/www.veeam.com\/kb4905\" target=\"_blank\" rel=\"noopener\">KB4905: Vulnerability Resolved in Veeam ONE 13.1 Patch 0<\/a> via the following tweet.<\/p>\n<p><a href=\"https:\/\/www.veeam.com\/kb4905\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-328822\" src=\"https:\/\/borncity.com\/blog\/wp-content\/uploads\/2026\/08\/Veeam-One-CVE-2026-65641.jpg\" alt=\"Veeam-One CVE-2026-65641\" width=\"541\" height=\"706\" \/><\/a><\/p>\n<p>The critical vulnerability CVE-2026-65641 (CVSS 9.3) in Veeam ONE allows an unauthenticated network attacker to force the Veeam ONE service account to perform SMB authentication. This may result in the disclosure of NTLM credentials.<\/p>\n<p>Affected versions include Veeam ONE 13.1.0.7034 and earlier. As of August 25, 2026, Veeam has released the following updates to address the vulnerability:<\/p>\n<ul>\n<li><a href=\"https:\/\/www.veeam.com\/kb4762\" target=\"_blank\" rel=\"noopener\">Veeam ONE 13.1 Patch 0 (build 13.1.0.7233)<\/a><\/li>\n<li><a href=\"https:\/\/www.veeam.com\/kb4762\" target=\"_blank\" rel=\"noopener\">Veeam ONE 13.0.2 Patch 1 (build 13.0.2.7159)<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>[German]A brief update for users and administrators who rely on Veeam ONE. There is a critical vulnerability, CVE-2026-65641 (CVSS 9.3), in Veeam ONE that could potentially expose login credentials. Veeam ONE should therefore be updated immediately to versions 13.1.0.7233 or &hellip; <a href=\"https:\/\/borncity.com\/win\/2026\/08\/27\/veeam-one-with-critical-vulnerability-cve-2026-65641-cvss-9-3\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[463,580,1547],"tags":[571,69,195,2835],"class_list":["post-40210","post","type-post","status-publish","format-standard","hentry","category-issue","category-security","category-software","tag-backup","tag-security","tag-update","tag-veeam"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/40210","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=40210"}],"version-history":[{"count":1,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/40210\/revisions"}],"predecessor-version":[{"id":40211,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/40210\/revisions\/40211"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=40210"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=40210"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=40210"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}