THREAT OPS › Threat News › [NVD] CVE-2021-30116 (CRITICAL 10.0) — Kaseya VSA before 9.5.7 allows credential disclosure, as exploited in the wild in July 2021. By default Kaseya VSA on premise offers a download page where the clients for the installation can be downloaded. The default URL for this page is https://x.x.x.x/dl.asp When an attacker
[NVD] CVE-2021-30116 (CRITICAL 10.0) — Kaseya VSA before 9.5.7 allows credential disclosure, as exploited in the wild in July 2021. By default Kaseya VSA on premise offers a download page where the clients for the installation can be downloaded. The default URL for this page is https://x.x.x.x/dl.asp When an attacker
CVE-2021-30116 CVSS: 10.0 CRITICAL Published: 2021-07-09T14:15:07.770
Kaseya VSA before 9.5.7 allows credential disclosure, as exploited in the wild in July 2021. By default Kaseya VSA on premise offers a download page where the clients for the installation can be downloaded. The default URL for this page is https://x.x.x.x/dl.asp When an attacker download a client for Windows and installs it, th
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- 113cc622839a4077a84837485ced6b93e440bf66d44057713cb2f95e503a06d9sha256
- CVE-2021-30116cve
- https://x.x.x.x/dl.aspurl
- https://x.x.x.x/dl.asp?un=840997037507813&pw=113cc622839a4077a84837485ced6b93e440bf66d44057713cb2f95e503a06d9url
Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-30116