CVE-2025-59470
CRITICALVeeam Backup & Replication 13.0.0.4967-13.0.1.1071 - Authenticated Remote Code Execution via Interval or Order Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2025-59470. PoCs published by XiaomingX, George0Papasotiriou.
AI-analyzed exploit summary The repository contains a functional exploit for CVE-2025-59470, demonstrating command injection in PostgreSQL's pg_backup extension via a crafted backup command. The exploit leverages a reverse shell payload to achieve remote code execution as the PostgreSQL user.
Description
This vulnerability allows a Backup Operator to perform remote code execution (RCE) as the postgres user by sending a malicious interval or order parameter.
Exploits (2)
The repository contains a functional exploit for CVE-2025-59470, demonstrating command injection in PostgreSQL's pg_backup extension via a crafted backup command. The exploit leverages a reverse shell payload to achieve remote code execution as the PostgreSQL user.
This exploit demonstrates a command injection vulnerability in PostgreSQL's pg_backup extension, allowing arbitrary command execution as the PostgreSQL user via unsanitized parameters. The PoC injects a reverse shell command through the backup directory parameter.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L