← Back to CVE List

CVE-2019-13076

Published: 2019-11-06T15:15Z
Last Modified: 2024-11-21T04:24Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has the ability to execute arbitrary commands against the database. The affected component is /userui/ticket_list.php, and affected parameters are order[0][column] and order[0][dir]. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt