Authentication Bypass Vulnerability in Quest KACE Systems Management Appliance
CVE-2025-32975
10CRITICAL
What is CVE-2025-32975?
The Quest KACE Systems Management Appliance is susceptible to an authentication bypass vulnerability that enables attackers to mimic legitimate users. This severe flaw, located within the single sign-on (SSO) authentication processing, can allow malicious actors to gain unauthorized access and potentially execute a complete administrative takeover of the system. Organizations using affected versions are urged to apply the latest patches to mitigate the risks associated with this vulnerability.