Low-Privileged User Credential Extraction via SSH
CVE-2026-21670 Published on March 12, 2026

A vulnerability allowing a low-privileged user to extract saved SSH credentials.

NVD

Weakness Type

Insufficiently Protected Credentials

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.


Affected Versions

Veeam Backup and Replication:

Exploit Probability

EPSS
0.04%
Percentile
11.33%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.