Critical severity9.8CISA KEVNVD Advisory· Published Feb 5, 2019· Updated Aug 13, 2026
CVE-2018-20753
CVE-2018-20753
Description
Kaseya VSA RMM before R9.3 9.3.0.35, R9.4 before 9.4.0.36, and R9.5 before 9.5.0.5 allows unprivileged remote attackers to execute PowerShell payloads on all managed devices. In January 2018, attackers actively exploited this vulnerability in the wild.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:kaseya:virtual_system_administrator:*:*:*:*:*:*:*:*Range: >=9.3,<9.3.0.35
Patches
Vulnerability mechanics
References
3- blog.huntresslabs.com/deep-dive-kaseya-vsa-mining-payload-c0ac839a0e88nvdExploitThird Party Advisory
- helpdesk.kaseya.com/hc/en-gb/articles/360000333152nvdVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.