Skip to the content.

CVE-2021-40387

Kaseya Unitrends Backup Software before 10.5.5-2 authenticated RCE

CVE CVE-2021-40387
Title Kaseya Unitrends Backup Software before 10.5.5-2 authenticated RCE
Credits
Affected products
Product Affected Unaffected Unknown
Kaseya Unitrends Backup Software >= n/a to < 10.5.5 (custom)
CVSS
References
Problem type(s) CWE-94 Improper Control of Generation of Code ('Code Injection')
Date published
Last modified 01 Sep 2021 18:55 UTC

Description

An issue was discovered in the server software in Kaseya Unitrends Backup Software before 10.5.5-2. There is authenticated remote code execution.



JSON version.