Cross-Site Scripting Vulnerability in Quest KACE System Management Appliance
CVE-2018-11133
6.1MEDIUM
What is CVE-2018-11133?
The 'fmt' parameter of the '/common/run_cross_report.php' script in the Quest KACE System Management Appliance version 8.0.318 is susceptible to cross-site scripting. This vulnerability allows attackers to inject malicious scripts into web pages viewed by users, potentially compromising sensitive information and session data.