Skip to content
COOEY

EXPOSURES › CVE-2017-18362

CVE-2017-18362

CRITICAL ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2022-05-24 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2017-18362 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 88/100 ransomwareexploited-in-wildunpatchedrcedata-breach

A Kaseya VSA SQL injection vulnerability allowed unauthenticated remote access to the database, linked to ransomware attacks.

The Kaseya VSA's ConnectWise ManagedITSync integration contained a SQL injection vulnerability enabling unauthorized access to the database. This poses a significant risk to DIB organizations using Kaseya VSA, potentially leading to data breaches and compliance failures (CMMC DF, MP). Immediately verify patch status and review access controls.

Shame score — The unauthenticated nature of the vulnerability and its exploitation by ransomware groups demonstrates a severe negligence in secure coding practices.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

ConnectWise ManagedITSync integration for Kaseya VSA is vulnerable to unauthenticated remote commands that allow full direct access to the Kaseya VSA database.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.