Vulnerability Details CVE-2018-20753
Kaseya VSA RMM before R9.3 9.3.0.35, R9.4 before 9.4.0.36, and R9.5 before 9.5.0.5 allows unprivileged remote attackers to execute PowerShell payloads on all managed devices. In January 2018, attackers actively exploited this vulnerability in the wild.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.372
EPSS Ranking 97.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Proposed Action
Kaseya VSA RMM allows unprivileged remote attackers to execute PowerShell payloads on all managed devices.
Ransomware Campaign
Known
Products affected by CVE-2018-20753
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.10
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.11
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.12
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.13
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.14
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.15
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.16
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.17
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.18
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.19
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.20
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.21
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.22
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.23
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.24
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.25
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.26
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.27
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.28
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.29
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.30
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.31
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.32
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.33
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.34
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.4
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.5
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.6
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.7
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.8
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.3.0.9
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.10
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.11
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.12
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.13
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.14
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.15
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.16
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.17
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.18
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.19
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.20
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.21
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.22
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.23
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.24
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.25
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.26
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.27
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.28
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.29
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.30
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.31
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.32
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.33
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.34
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.35
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.5
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.6
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.7
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.8
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.4.0.9
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.5
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.5.0.2
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.5.0.3
-
cpe:2.3:a:kaseya:virtual_system_administrator:9.5.0.4