Low-Privileged User Credential Extraction via SSH
CVE-2026-21670 Published on March 12, 2026
A vulnerability allowing a low-privileged user to extract saved SSH credentials.
Weakness Type
Insufficiently Protected Credentials
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
Affected Versions
Veeam Backup and Replication:- Version 13.0.1 and below 13.0.1 is affected.
Exploit Probability
EPSS
0.04%
Percentile
11.33%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.