CVE-2017-18362—Kaseya VSA SQL Injection Vulnerability
PUBLISHEDvulnerability record
2022-05-24 · last modified June 21, 2025
Metadata
漏洞名称
Kaseya VSA SQL Injection Vulnerability
描述
ConnectWise ManagedITSync integration for Kaseya VSA is vulnerable to unauthenticated remote commands that allow full direct access to the Kaseya VSA database.
已知用于勒索软件活动吗?
采集行动
The impacted product is end-of-life and should be disconnected if still in use.