PT-2019-12113 · Quest · Quest Kace

Juan Pablo Lopez Yacubian

·

Published

2019-07-08

·

Updated

2019-10-09

·

CVE-2019-10973

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Quest KACE versions prior to 8.0.x Quest KACE versions prior to 8.1.x Quest KACE versions prior to 9.0.x
Description The issue allows unintentional access to the appliance by leveraging functions of the troubleshooting tools located in the administrator user interface.
Recommendations For versions prior to 8.0.x, update to version 8.0.x or later. For versions prior to 8.1.x, update to version 8.1.x or later. For versions prior to 9.0.x, update to version 9.0.x or later.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-10973

Affected Products

Quest Kace