NTLM Credential Capture in Veeam Report Services
CVE-2026-64632
8.5HIGH
What is CVE-2026-64632?
A vulnerability exists within Veeam Report Services that enables low-privileged users to intercept and capture the NTLM credentials associated with the Reporter service account. This flaw poses serious security risks, allowing unauthorized access and potential exploitation of sensitive information. It is essential for users and organizations relying on Veeam solutions to implement remediative actions and enhance their security posture against such exploits.
Affected Version(s)
ONE 0 <= 13.0.2