CVE-2021-44030: XSS
Quest KACE Desktop Authority before 11.2 allows XSS because it does not prevent untrusted HTML from reaching the jQuery.htmlPrefilter method of jQuery.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-44030?
CVE-2021-44030 refers to a vulnerability in Quest KACE Desktop Authority that allows XSS attacks by not preventing untrusted HTML from reaching the jQuery.htmlPrefilter method of jQuery.
How severe is CVE-2021-44030?
CVE-2021-44030 has a severity rating of medium and a CVSS score of 6.1.
How does CVE-2021-44030 affect Quest KACE Desktop Authority?
CVE-2021-44030 affects Quest KACE Desktop Authority versions prior to 11.2.
How can I fix CVE-2021-44030?
To fix CVE-2021-44030, it is recommended to update Quest KACE Desktop Authority to version 11.2 or later.
Where can I find more information about CVE-2021-44030?
More information about CVE-2021-44030 can be found in the following link: [Quest Response to Desktop Authority Vulnerabilities Prior to 11.2](https://support.quest.com/kace-desktop-authority/kb/336098/quest-response-to-desktop-authority-vulnerabilities-prior-to-11-2)