CVE-2021-43040
Kaseya Unitrends Agent vulnerability analysis and mitigation

Overview

An issue was discovered in Kaseya Unitrends Backup Appliance before version 10.5.5, identified as CVE-2021-43040. The vulnerability involves the privileged vaultServer component which could be leveraged to create arbitrary writable files, leading to privilege escalation. This security flaw was discovered and reported by CyberOne and DIVD, with the vendor releasing a fix in December 2021 (Kaseya Advisory).

Technical details

The vulnerability has been assigned a CVSS v3.1 base score of 8.8 (HIGH) with the vector string CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H. The issue specifically involves the vaultServer component, which could be exploited to create arbitrary writable files on the system. The vulnerability is part of a larger attack chain where attackers could leverage this file creation capability for privilege escalation purposes (CyberOne Blog).

Impact

The vulnerability's impact is significant as it allows attackers to escalate privileges on the affected system. Since the Unitrends Backup appliance typically holds a privileged position in the network, a successful exploitation could potentially extend to all computers configured as backup clients. The ability to create arbitrary writable files could lead to complete system compromise (CyberOne Blog).

Mitigation and workarounds

Users should immediately update to Unitrends software version 10.5.5 or later to address this vulnerability. The vendor has released patches that remove the vulnerable functionality and implement proper security controls. It is also recommended to follow the vendor's guidance regarding network exposure of the backup infrastructure (Kaseya Advisory).

Additional resources


SourceThis report was generated using AI

Related Kaseya Unitrends Agent vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2021-40386CRITICAL9.8
  • Kaseya Unitrends AgentKaseya Unitrends Agent
  • cpe:2.3:a:kaseya:unitrends_backup
NoYesApr 15, 2022
CVE-2021-43044CRITICAL9.8
  • Kaseya Unitrends AgentKaseya Unitrends Agent
  • cpe:2.3:a:kaseya:unitrends_backup
NoYesDec 06, 2021
CVE-2021-43042CRITICAL9.8
  • Kaseya Unitrends AgentKaseya Unitrends Agent
  • cpe:2.3:a:kaseya:unitrends_backup
NoYesDec 06, 2021
CVE-2021-43041HIGH8.8
  • Kaseya Unitrends AgentKaseya Unitrends Agent
  • cpe:2.3:a:kaseya:unitrends_backup
NoYesDec 06, 2021
CVE-2021-43043MEDIUM6.5
  • Kaseya Unitrends AgentKaseya Unitrends Agent
  • cpe:2.3:a:kaseya:unitrends_backup
NoYesDec 06, 2021

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management