Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-06875
HistoryDec 27, 2021 - 12:00 a.m.

Quest KACE Desktop Authority Cross-Site Scripting Vulnerability

2021-12-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
6

0.001 Low

EPSS

Percentile

31.1%

Quest KACE Desktop Authority is a desktop management software from Quest, Inc. A cross-site scripting vulnerability exists in Quest KACE Desktop Authority, which can be exploited by remote attackers to submit special requests that can cause untrusted HTML to reach jQuery’s jQuery. htmlPrefilter method, which can be accessed without authorization.

CPENameOperatorVersion
quest kace desktop authoritylt11.2

0.001 Low

EPSS

Percentile

31.1%

Related for CNVD-2022-06875