CVE-2018-11141
CRITICALQuest KACE System Management Appliance 8.0.318 - Path Traversal and Arbitrary File Write via IMAGES_JSON Parameter
Title source: llmDescription
The 'IMAGES_JSON' and 'attachments_to_remove[]' parameters of the '/adminui/advisory.php' script in the Quest KACE System Management Virtual Appliance 8.0.318 can be abused to write and delete files respectively via Directory Traversal. Files can be at any location where the 'www' user has write permissions.
References (1)
Core 1
Core References
Exploit, Technical Description, Third Party Advisory x_refsource_misc
https://www.coresecurity.com/advisories/quest-kace-system-management-appliance-multiple-vulnerabilities
Scores
CVSS v3
9.8
EPSS
0.0202
EPSS Percentile
78.6%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-22
Status
published
Products (1)
quest/kace_system_management_appliance
8.0.318
Published
May 31, 2018
Tracked Since
Feb 18, 2026