RULE(RULE ID:333725)

Rule General Information
Release Date: 2021-07-09
Rule Name: Potential Kaseya VSA Remote Code Execution Vulnerability -2 (CVE-2021-30116)
Severity:
CVE ID:
Rule Protection Details
Description: Kaseya VSA RMM is a remote monitoring and terminal management solution of Kaseya, Switzerland. Kaseya VSA before 9.5.7 allows credential disclosure, which can lead to code execution.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Others
Reference: https://csirt.divd.nl/2021/07/07/Kaseya-Limited-Disclosure/
https://csirt.divd.nl/2021/07/04/Kaseya-Case-Update-2/
https://helpdesk.kaseya.com/hc/en-gb/articles/4403440684689-Important-Notice-July-2nd-2021
https://nvd.nist.gov/vuln/detail/CVE-2021-30116
Solutions
Refer to the announcement or patch by the vendor: https://www.cybersecurity-help.cz/vdb/SB2021070501