Vulnerabilities > CVE-2021-44028 - XXE vulnerability in Quest Kace Desktop Authority
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
XXE can occur in Quest KACE Desktop Authority before 11.2 because the log4net configuration file might be controlled by an attacker, a related issue to CVE-2018-1285.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 5 |