Three Zero-Day Bugs Plague Kaseya Unitrends Backup Servers
#1
Information 
Quote:There are three new, unpatched zero-day vulnerabilities in Kaseya Unitrends that include remote code execution (RCE) and authenticated privilege escalation on the client-side.
 
The Dutch Institute for Vulnerability Disclosure (DIVD) on Monday issued a public advisory warning that the service and clients should be kept off the internet until there’s a patch.
 
Kaseya Unitrends is a cloud-based enterprise backup and disaster recovery technology that’s delivered as either disaster recovery-as-a-service (DRaaS) or as an add-on for the Kaseya Virtual System/Server Administrator (VSA) remote management platform. The flaws are in versions earlier than 10.5.2.
Quote:Do not expose this service or the clients (running default on ports 80, 443, 1743, 1745) directly to the internet until Kaseya has patched these vulnerabilities. —DIVD advisory

Read more: Three Zero-Day Bugs Plague Kaseya Unitrends Backup Servers | Threatpost
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Messages In This Thread
Three Zero-Day Bugs Plague Kaseya Unitrends Backup Servers - by silversurfer - 28 July 21, 11:50

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
AirVPN
AirVPN - Toronto (On...jasonX — 09:15
Webroot SecureAnywhere 9.0.40.53
Webroot SecureAnyw...harlan4096 — 07:27
Java Runtime Environment 8.0 Update 461
Java Runtime Envir...harlan4096 — 07:25
AMD launches quad-core Ryzen AI 5 330 ba...
AMD releases Krack...harlan4096 — 07:24
Antivirus Removal Tool 2025.07 (v.1)
An updated version...harlan4096 — 07:22

[-]
Birthdays
Today's Birthdays
avatar (37)ixoqe
Upcoming Birthdays
avatar (42)lapedDow
avatar (48)rituabew
avatar (36)omyjul
avatar (40)papedDow
avatar (49)ArnoldFum
avatar (37)yfaza
avatar (48)Kevensi
avatar (38)boineDon
avatar (39)Grompelbawn
avatar (40)vkseogaF
avatar (36)usogy
avatar (39)ywixazok
avatar (35)pa.OpenTran

[-]
Online Staff
There are no staff members currently online.

>