AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-58071

HIGH · CVSS 8.2 EPSS 0.28%

Source: NVD + CISA KEV + EPSS · Published 2026-08-04 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

A vulnerability in Veeam Service Provider Console allows unauthenticated attackers to exploit a brief window of opportunity to access the proxied appliance API with elevated privileges as a Portal Administrator, potentially leading to unauthorized actions within the system. Organizations using Veeam Service Provider Console should prioritize addressing this issue to mitigate risks associated with unauthorized access and potential data breaches. Immediate action is recommended for service providers managing sensitive data or critical infrastructure.

CVE
CVE-2026-58071
Severity
HIGH
CVSS
8.2
EPSS
0.28%

Original NVD Description

A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to access the proxied appliance API asPortal Administrator during a short window after an administrator session begins.