RSS   Vulnerabilities for 'Kace systems management'   RSS

2020-03-09
 
CVE-2019-20504

CWE-74
 

 
service/krashrpt.php in Quest KACE K1000 Systems Management Appliance before 6.4 SP3 (6.4.120822) allows a remote attacker to execute code via shell metacharacters in the kuid parameter.

 

 >>> Vendor: Quest 13 Products
Toad for data analysts
Intrust
Privilege manager
Privilege manager for unix
Kace asset management appliance
Kace systems management appliance
K1000 as a service
Netvault backup
Kace system management appliance
Kace systems management
Foglight evolve
Policy authority for unified communications
Kace desktop authority


Copyright 2024, cxsecurity.com

 

Back to Top