보안뉴스 아카이브
긴급도 90/100 심각도 미평가 · 미평가 악용확률 99.8% CISA KEV · 2022-03-25 랜섬웨어 악용

CVE-2018-11138

CISA 기관 조치 기한: 2022-04-15

Quest KACE System Management Appliance

The '/common/download_agent_installer.php' script in the Quest KACE System Management Appliance is accessible by anonymous users and can be abused to perform remote code execution.
KEV 필수 조치: Apply updates per vendor instructions.
공개 익스플로잇 / PoC

NVD 상세 ↗   참고 링크 ↗

← 취약점 목록