vendor:
KACE Systems Management Appliance
by:
SlidingWindow
6.5
CVSS
MEDIUM
Blind SQL Injection Vulnerability in Ajax_Lookup_List.PHP
89
CWE
Product Name: KACE Systems Management Appliance
Affected Version From: KACE SMA versions prior to 9.0.270 PATCH SEC2018_20180410
Affected Version To: KACE SMA versions prior to 9.0.270 PATCH SEC2018_20180410
Patch Exists: YES
Related CWE: CVE-2018-5404
CPE: o:quest:kace_systems_management_appliance
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows, Linux, Mac
2018
Dell Kace Appliance Multiple Vulnerabilities
The Dell Kace allows Admin users to access ajax_lookup_list.php. However, it can be accessed by a least privileged user with ‘User Console Only’ rights. Also, the user input supplied to 'selvalue' parameter is not sanitized that leads to a Blind SQL Injection vulnerability.
Mitigation:
Upgrade to KACE SMA versions 9.0.270 PATCH SEC2018_20180410 or later.