CVE-2019-13077: Quest KACE Systems Management Appliance
Medium severity, CVSS 6.1. EPSS: 1% chance of exploitation in the next 30 days.
Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the sam_detail_titled.php SAM_TYPE parameter) that allows an attacker to create a malicious link in order to attack authenticated users.
Affected products
- Quest KACE Systems Management Appliance: version 9.1.317 only
Published 2019-11-06. Last modified 2026-06-17.