Cleartext Guest OS Credentials Logged in Support Log
CVE-2026-58070 Published on August 26, 2026
A vulnerability that records guest OS processing credentials in cleartext in a support log on the guest, allowing a user with read access to that log to recover privileged account credentials.
Weakness Type
Insertion of Sensitive Information into Log File
Information written to log files can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information.
Affected Versions
Veeam Backup and Replication:- Before 13.0.3 is affected.