KNOWN EXPLOITED VULNERABILITY DOSSIER

CVE-2021-30116

Kaseya · VSA

Zero-day credential leak and remote command injection flaw abused by REvil / Sodinokibi to encrypt over 1,500 downstream businesses.

CISA KEV Added: 2021-11-03
Severity Rating: Critical (CVSS 9.8)
Legal Indictments: 1 Case
Catalog Status: Active KEV Mandate

Correlated Federal Court Cases & Indictments (1)

Associated Government Advisories

← Back to All CVEs Explore ATT&CK Matrix →