Lucene search

K
cvelistMitreCVELIST:CVE-2018-11141
HistoryMay 31, 2018 - 6:00 p.m.

CVE-2018-11141

2018-05-3118:00:00
mitre
www.cve.org
1

9 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

77.1%

The ‘IMAGES_JSON’ and ‘attachments_to_remove[]’ parameters of the ‘/adminui/advisory.php’ script in the Quest KACE System Management Virtual Appliance 8.0.318 can be abused to write and delete files respectively via Directory Traversal. Files can be at any location where the ‘www’ user has write permissions.

9 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

77.1%

Related for CVELIST:CVE-2018-11141