CVE-2021-35971

EUVD-2021-22604
Veeam Backup and Replication 10 before 10.0.1.4854 P20210609 and 11 before 11.0.0.837 P20210507 mishandles deserialization during Microsoft .NET remoting.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 73%
Affected Products (NVD)
VendorProductVersion
veeamveeam_backup_\&_replication
10.0 ≤
𝑥
< 10.0.1.4854
veeamveeam_backup_\&_replication
11.0 ≤
𝑥
< 11.0.0.837
𝑥
= Vulnerable software versions