VYPR

KServer

by Kaseya

CVEs (1)

  • CVE-2013-10034CriJul 31, 2025
    risk 0.68cvss epss 0.55

    An unrestricted file upload vulnerability exists in Kaseya KServer versions prior to 6.3.0.2. The uploadImage.asp endpoint allows unauthenticated users to upload files to arbitrary paths via a crafted filename parameter in a multipart/form-data POST request. Due to the lack of…