Security Advisory

CVE-2019-13081

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-11-06 14:55:00
Last updated 2024-08-04 23:41:10
Assigner mitre
State PUBLISHED

Description

Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the title field in the /common/ticket_associated_tickets.php service desk ticket functionality) that allows an authenticated user to execute arbitrary JavaScript in a service desk users browser.