CVE-2015-6589: Path Traversal
Directory traversal vulnerability in Kaseya Virtual System Administrator (VSA) 7.0.0.0 before 7.0.0.33, 8..0.0.0 before 8.0.0.23, 9.0.0.0 before 9.0.0.19, and 9.1.0.0 before 9.1.0.9 allows remote authenticated users to write to and execute arbitrary files due to insufficient restrictions in file paths to json.ashx.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6589?
CVE-2015-6589 is classified as a high severity vulnerability due to its potential to allow unauthorized file access and execution.
How do I fix CVE-2015-6589?
To fix CVE-2015-6589, upgrade Kaseya Virtual System Administrator to the latest version that addresses this vulnerability.
Who is affected by CVE-2015-6589?
CVE-2015-6589 affects Kaseya Virtual System Administrator versions prior to 7.0.0.33, 8.0.0.23, 9.0.0.19, and 9.1.0.9.
What type of vulnerability is CVE-2015-6589?
CVE-2015-6589 is a directory traversal vulnerability that allows remote authenticated users to write and execute arbitrary files.
What are the risks of not patching CVE-2015-6589?
Not patching CVE-2015-6589 could lead to unauthorized access, data manipulation, and potential system compromise.