Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the title field in the /common/ticket_associated_tickets.php service desk ticket functionality) that allows an authenticated user to execute arbitrary JavaScript in a service desk user's browser.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
quest kace systems management appliance 9.1.317 |