¡¾Îó²îͨ¸æ¡¿Veeam Backup & Replication Ô¶³Ì´úÂëÖ´ÐÐÎó²î (CVE-2025-23121)
Ðû²¼Ê±¼ä 2025-06-19Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Veeam Backup & ReplicationÔ¶³Ì´úÂëÖ´ÐÐÎó²î | ||
CVE ID | CVE-2025-23121 | ||
Îó²îÀàÐÍ | RCE | ·¢Ã÷ʱ¼ä | 2025-06-19 |
Îó²îÆÀ·Ö | 9.9 | Îó²îÆ·¼¶ | ÑÏÖØ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | µÍ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»ÐèÒª |
PoC/EXP | δ¹ûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
Veeam Backup & ReplicationÊÇÒ»¿îÆóÒµ¼¶±¸·ÝºÍÔÖÄѻָ´½â¾ö¼Æ»®£¬£¬£¬£¬£¬£¬Ö÷ÒªÓÃÓÚÐéÄ⻯ÇéÐÎÖеÄÊý¾Ý±£»£»£»¤¡£¡£¡£¡£¡£ËüÖ§³ÖVMware vSphere¡¢Microsoft Hyper-VµÈÐéÄâÆ½Ì¨£¬£¬£¬£¬£¬£¬Ìṩ¸ßЧµÄ±¸·Ý¡¢»Ö¸´¡¢¸´ÖƼ°¼à¿Ø¹¦Ð§¡£¡£¡£¡£¡£VeeamÄܹ»¾ÙÐм´Ê±»Ö¸´¡¢ÔÖÄѻָ´ºÍÔÆ±¸·Ý£¬£¬£¬£¬£¬£¬×ÊÖúÆóҵȷ±£Êý¾ÝÇå¾²¡¢ÓªÒµÒ»Á¬ÐԺͿìËÙ»Ö¸´¡£¡£¡£¡£¡£¸ÃÈí¼þ¾ßÓÐÇáÓ¯µÄÖÎÀí½çÃæ¡¢ÎÞаµÄ´æ´¢Ñ¡ÏîºÍǿʢµÄ×Ô¶¯»¯¹¦Ð§£¬£¬£¬£¬£¬£¬ÊÊÓÃÓÚÖÖÖÖ¹æÄ£µÄÆóÒµ¡£¡£¡£¡£¡£
2025Äê6ÔÂ19ÈÕ£¬£¬£¬£¬£¬£¬¿Ðý¹ú¼ÊÓÎÏ·¼¯ÍÅVSRC¼à²âµ½veeamÐû²¼Ç徲ͨ¸æ£¬£¬£¬£¬£¬£¬Åû¶Veeam Backup & ReplicationÖеÄÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£¡£¸ÃÎó²îÔÊÐí¾ÓÉÉí·ÝÑéÖ¤µÄÓòÓû§ÔÚVeeam Backup & Replication±¸·ÝЧÀÍÆ÷ÉÏÖ´ÐÐÔ¶³Ì´úÂë¡£¡£¡£¡£¡£Îó²îÆÀ·Ö9.9·Ö£¬£¬£¬£¬£¬£¬Îó²î¼¶±ðΪÑÏÖØ¡£¡£¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
½¨ÒéÉý¼¶Veeam Backup & Replication µ½12.3.2(build 12.3.2.3617)¡£¡£¡£¡£¡£
ÏÂÔØÁ´½Ó£ºhttps://www.veeam.com/kb4696/
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£¡£¡£¡£¡£