CVE-2022-38220

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
01/03/2023
Last modified:
18/03/2025

Description

An XSS vulnerability exists within Quest KACE Systems Management Appliance (SMA) through 12.1 that may allow remote injection of arbitrary web script or HTML.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:quest:kace_systems_management_appliance:*:*:*:*:*:*:*:* 12.1 (including)