target entity

Kaseya

3 source-linked records in the current knowledge graph.

high

CVE-2017-18362: Kaseya VSA SQL Injection Vulnerability

ConnectWise ManagedITSync integration for Kaseya VSA is vulnerable to unauthenticated remote commands that allow full direct access to the Kaseya VSA database. Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2017-18362EPSS 86.7%KaseyaVirtual System/Server Administrator (VSA)
CISA KEV ↗ · unattributed attribution