Описание
Quest KACE, all versions prior to version 8.0.x, 8.1.x, and 9.0.x, allows unintentional access to the appliance leveraging functions of the troubleshooting tools located in the administrator user interface.
Ссылки
- Third Party AdvisoryVDB Entry
- PatchThird Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- PatchThird Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия от 8.0.0 (включая) до 8.0.320 (включая)Версия от 8.1.0 (включая) до 8.1.108 (включая)Версия от 9.0.0 (включая) до 9.0.270 (включая)
Одно из
cpe:2.3:a:quest:kace_systems_management_appliance:*:*:*:*:*:*:*:*
cpe:2.3:a:quest:kace_systems_management_appliance:*:*:*:*:*:*:*:*
cpe:2.3:a:quest:kace_systems_management_appliance:*:*:*:*:*:*:*:*
EPSS
Процентиль: 70%
0.00646
Низкий
7.2 High
CVSS3
9 Critical
CVSS2
Дефекты
CWE-20
CWE-20
Связанные уязвимости
CVSS3: 7.2
github
больше 3 лет назад
Quest KACE, all versions prior to version 8.0.x, 8.1.x, and 9.0.x, allows unintentional access to the appliance leveraging functions of the troubleshooting tools located in the administrator user interface.
EPSS
Процентиль: 70%
0.00646
Низкий
7.2 High
CVSS3
9 Critical
CVSS2
Дефекты
CWE-20
CWE-20