First published: Wed Nov 06 2019(Updated: )
A reflected XSS vulnerability exists in Quest KACE Systems Management Appliance Server Center 9.1.317 affecting the userui/software_library.php component via the PATH_INFO.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Quest KACE Systems Management Appliance | =9.1.317 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-12917 is a reflected XSS vulnerability that exists in Quest KACE Systems Management Appliance Server Center 9.1.317.
CVE-2019-12917 affects the userui/software_library.php component of Quest KACE Systems Management Appliance Server Center 9.1.317.
The severity of CVE-2019-12917 is rated as medium with a severity value of 6.1.
To fix the reflected XSS vulnerability CVE-2019-12917, update Quest KACE Systems Management Appliance to version 9.1.318 or later.
More information about CVE-2019-12917 can be found at the following references: [link1](https://support.quest.com/kb/311388/quest-response-to-certezza-vulnerability-report), [link2](https://www.quest.com/products/kace-systems-management-appliance/).