CVE-2018-11135: High severity Quest KACE System Management Appliance vulnerability
The script '/adminui/errordetails.php' in the Quest KACE System Management Appliance 8.0.318 allows authenticated users to conduct PHP object injection attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11135?
CVE-2018-11135 is considered a high severity issue due to its potential for PHP object injection attacks.
How do I fix CVE-2018-11135?
To fix CVE-2018-11135, you should update the Quest KACE System Management Appliance to the latest version that addresses this vulnerability.
What type of attack can CVE-2018-11135 facilitate?
CVE-2018-11135 can facilitate PHP object injection attacks, which may allow an attacker to manipulate application logic.
Who is affected by CVE-2018-11135?
Only authenticated users of the Quest KACE System Management Appliance version 8.0.318 are affected by CVE-2018-11135.
What is the impact of exploiting CVE-2018-11135?
Exploiting CVE-2018-11135 can lead to unauthorized actions being performed on the Quest KACE System Management Appliance.