Security Advisory

CVE-2018-11138

9.8
CRITICAL

Vulnerability Description

The '/common/download_agent_installer.php' script in the Quest KACE System Management Appliance 8.0.318 is accessible by anonymous users and can be abused to execute arbitrary commands on the system.
Published Date May 31, 2018
Official Source NIST NVD Advisory