Category Archives: Veeam

Using Single-disk Veeam Infrastructure Appliance 13.1 with iSCSI-attached storage

Release 13.1 of Veeam Data Platform brings many new features, greatly increased manageability of the product. In this post, I want to cover Veeam Infrastructure Appliance in a single-disk configuration with iSCSI-attached storage.

If you do not know what the Veeam Infrastructure Appliance is, you can read this post. If you are an active VIA user, you know that before version 13.1, we could only use locally attached disks for a hardened repository, but this changed in the latest release. Now we can connect remote storage, like FC or iSCSI based LUNs, to store backups.

Next, we will go through the configuration steps to connect an iSCSI-based LUN to a VIA hardened repository.

Continue reading

Loading

Veeam Data Platform 13.1 Release

Each Veeam release is a massive set of new features and enhancements, and Veeam 13.1 is not an exception. For example, a “What’s New” document for Backup and Replication is 41 pages long.

Here you can find “What’s New” for all Data Platform v13.1 products:
Veeam Backup and Replication
Veeam ONE
Veeam Recovery Orchestrator

I won’t share all new features and copy-paste all 60 pages of all documents, but I’ll share with you features I really like and will definitely use in the nearest future. Make sure to read the What’s New document; I bet you will find a lot of good stuff for your backup infrastructure.

Continue reading

Loading

Configuring Veeam Backup from Storage Snapshots with HPE Alletra

In this short article, we will look at the procedure for configuring backups of VMware vSphere VMs stored on HPE Alletra using the Veeam Backup from Storage Snapshots feature.

For those who don’t know, this feature allows us to reduce the virtual machine snapshot lifetime from minutes or hours to just seconds, and it is available for use with many storage vendors and models.

Continue reading

Loading

Veeam Backup & Replication 13.0.1.2067 Patch and Critical Security Issues

Veeam released a new version of the Backup & Replication product with the number 13.0.1.2067 addressing some critical security issues.

You can find more info in the following KB 4831.

CVE-2026-21669, CVSS v3.1 Score: 9.9 – A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on the Backup Server.
Affects Windows-based servers.

CVE-2026-21670, CVSS v3.1 Score: 7.7 – A vulnerability allowing a low-privileged user to extract saved SSH credentials.
Affects Windows-based servers and Veeam Software Appliance as well.

CVE-2026-21671, CVSS v3.1 Score: 9.1 – A vulnerability allowing an authenticated user with the Backup Administrator role to perform remote code execution (RCE) in high availability (HA) deployments of Veeam Backup & Replication.
This vulnerability affects only Veeam Software Appliance type of installation.

CVE-2026-21672, CVSS v3.1 Score: 8.8 – A vulnerability allowing local privilege escalation on Windows-based Veeam Backup & Replication servers.
Affects only Windows-based installations.

CVE-2026-21708, CVSS v3.1 Score: 9.9 – A vulnerability allowing a Backup Viewer to perform remote code execution (RCE) as the postgres user.
Affects both types of Veeam Backup Server.

As you can see, no matter the installation you’re using – Windows-based backup server or Veeam Software Appliance – it’s time to update ASAP.

Although this is not the topic of the vulnerabilities above, let me remind you that a production domain-joined VBR server is not a best practice. As for me, I will use VSA in all my future installations because it’s a really high-security appliance, which has already closed many vectors of possible attacks.

Loading

Using Veeam Infrastructure Appliance v13

Previously I wrote about the newest Veeam Feature – Veeam Software Appliance – pre-built and pre-hardened image containing all the packages needed to run a fully functional backup server on Linux.

In this article, we will look at the Veeam Infrastructure Appliance – an infrastructure component based on Veeam JeOS as well, which can hold different roles – Proxy, Repository (including Hardened), Mount Server, and so on. Do you remember Veeam Hardened Repository ISO? – This release is a massive evolution.

In addition, please consider this article as a little walk through the basic Veeam Software Appliance Web UI.

Continue reading

Loading

Veeam 13.0.1 GA

Veeam just released version 13.0.1, and we can consider this edition a full v13 launch for all Veeam products, including the Backup Server on Windows. Previously, most of the v13 features were available only on the recently launched Veeam Software Appliance.

Download the newest versions or read the release notes on the portal.

What’s new in v13? – Official and extra-large document. My short (but not full) version.

If you didn’t hear about Veeam Software Appliance before (Linux-based Backup Server) – check out my walkthrough article

Keep in mind: If you are using a Backup Server on Windows and want to update to version 13.0.1; the minimum version of the Backup Server should be 12.3.1 or later. Follow this KB for more information.

Loading

Veeam Backup & Replication 12.3.2.4165 Patch and critical security issues

Veeam just dropped a new KB, related to three critical security fixes:
CVE-2025-48983, CVSS v3.1 Score: 9.9:
A vulnerability in the Mount service of Veeam Backup & Replication, which allows for remote code execution (RCE) on the Backup infrastructure hosts by an authenticated domain user.

CVE-2025-48984, CVSS v3.1 Score: 9.9:
A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.

Both vulnerabilities only impact domain-joined Veeam Backup & Replication v12.

The vulnerabilities affected all versions of Veeam Backup & Replication v12.3.2.3617 and earlier builds and were fixed in the latest VBR release, 12.3.2.4165, so consider updating as soon as possible.

One vulnerability is related to the Veeam agent for MS Windows.
CVE-2025-48982, CVSS v3.1 Score: 7.3:
This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation if a system administrator is tricked into restoring a malicious file.

Consider updating your Veeam Agent for Microsoft Windows to version 6.3.2.1302.

Loading

First look at the Veeam Software Appliance

For those who do not know, Veeam Software Appliance (VSA) is a new feature of VBR v13, and this product is a pre-built, pre-hardened appliance based on the Veeam-managed Linux-based “Just Enough OS” (JeOS), including all the software you need to run the Veeam Backup & Replication server.

Using software appliance, you do not need to install Windows Server and backup software; just deploy the appliance, and you are ready to go.

In this walkthrough, we will look at how to install VSA and what the Web UI looks like. We will examine VSA features in greater detail in future articles.

Continue reading

Loading

Veeam Backup & Replication 12.3.2 Release

A new version of Veeam Backup & Replication was released with the build number 12.3.2.3617.

First and foremost, this release includes security fixes for VBR server:
CVE-2025-23121CVSS v3.0 Score: 9.9, “A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.”

This vulnerability affects only domain-joined backup servers, so if your VBR server is part of a domain, please consider updating it as soon as possible.

One excellent article to read is Workgroup or Domain” in the Veeam Best Practices guide.

CVE-2025-24286CVSS v3.1 Score: 7.2, “A vulnerability allowing an authenticated user with the Backup Operator role to modify backup jobs, which could execute arbitrary code.”

And one security fix for Veeam Agent:
CVE-2025-24287 CVSS v3.1 Score: 6.1, “A vulnerability allowing local system users to modify directory contents, allowing for arbitrary code execution on the local system with elevated permissions.”

In addition to security fixes, this release resolved several issues and added support for new modern Linux distros, including recently released RHEL 10 and RHEL-like Oracle Linux 10 and Rocky Linux 10, Ubuntu 25.04, and Debian 12.10/11.

Loading