Medium severity6.5NVD Advisory· Published Jul 9, 2021· Updated Jun 17, 2026
CVE-2021-30121
CVE-2021-30121
Description
Semi-authenticated local file inclusion The contents of arbitrary files can be returned by the webserver Example request: https://x.x.x.x/KLC/js/Kaseya.SB.JS/js.aspx?path=C:\Kaseya\WebPages\dl.asp A valid sessionId is required but can be easily obtained via CVE-2021-30118
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Kaseya/VSAdescription
Patches
Vulnerability mechanics
References
3- csirt.divd.nl/2021/07/07/Kaseya-Limited-Disclosure/nvdPatchThird Party Advisory
- csirt.divd.nl/DIVD-2021-00011nvdPatchThird Party Advisory
- csirt.divd.nl/CVE-2021-30121nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.