Known Vulnerabilities for products from Quest

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Quest".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2020-35727 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious... 5.4 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35726 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious... 6.1 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35725 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious... 6.1 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35724 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious... 5.4 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35723 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious... 5.4 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35722 ** UNSUPPORTED WHEN ASSIGNED ** CSRF in Web Compliance Manager in Quest Policy Authority 8.1.2.200 allows remote attackers to... 6.5 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35721 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious... 5.4 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35720 ** UNSUPPORTED WHEN ASSIGNED ** Stored XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to store malicious cod... 5.4 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35719 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious... 6.1 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35206 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Web Compliance Manager in Quest Policy Authority version 8.1.2.200 allows at... 6.1 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35205 ** UNSUPPORTED WHEN ASSIGNED ** Server Side Request Forgery (SSRF) in Web Compliance Manager in Quest Policy Authority versio... 9.8 - CRITICAL 2021-01-11 2023-11-07
CVE-2020-35204 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Quest Policy Authority version 8.1.2.200 allows attackers to inject maliciou... 6.1 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-35203 ** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Web Compliance Manager in Quest Policy Authority version 8.1.2.200 allows at... 6.1 - MEDIUM 2021-01-11 2023-11-07
CVE-2020-8868 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Quest Foglight Evolve 9.0.0... 9.8 - CRITICAL 2020-03-23 2020-03-25
CVE-2019-20504 service/krashrpt.php in Quest KACE K1000 Systems Management Appliance before 6.4 SP3 (6.4.120822) allows a remote attacker to... 9.8 - CRITICAL 2020-03-09 2020-08-24
CVE-2019-13081 Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the title field in the /common/ti... 5.4 - MEDIUM 2019-11-06 2019-11-07
CVE-2019-13080 Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via an SVG image and HTML file) that ... 5.4 - MEDIUM 2019-11-06 2019-11-07
CVE-2019-13079 Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has the a... 8.8 - HIGH 2019-11-06 2019-11-07
CVE-2019-13078 Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has the a... 8.8 - HIGH 2019-11-06 2019-11-07
CVE-2019-13077 Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the sam_detail_titled.php SAM_TYP... 6.1 - MEDIUM 2019-11-06 2019-11-07

Known software with vulnerabilities from Quest

Type Vendor Product Version
ApplicationQuestActiveroles Management Shell For Active Directory1.4.0.2139
ApplicationQuestApplication Integration Tool1.0.5
ApplicationQuestBenchmark Factory For Databases5.5.1.379
ApplicationQuestBig Brother System And Network Monitor Client1.8.4000
ApplicationQuestCapacity Manager For Oracle1.1.2
ApplicationQuestDisk Backup4.0
ApplicationQuestFoglight Evolve9.0.0
ApplicationQuestInstaller Logging3.0.1
ApplicationQuestIntrust10.1
ApplicationQuestIntrust Administrative Report Pack10.2.5.1024
ApplicationQuestIntrust Agent10.2.5.1024
ApplicationQuestIntrust Indexing Tool10.2.5.1024
ApplicationQuestIntrust Knowledge Pack For Cisco Pix Firewall And Checkpoint Firewall10.2.5.1024
ApplicationQuestIntrust Knowledge Pack For Hpux10.2.5.1024
ApplicationQuestIntrust Knowledge Pack For Microsoft Audit Collection Services10.2.5.1024
ApplicationQuestIntrust Knowledge Pack For Microsoft Excel10.2.5.1024
ApplicationQuestIntrust Knowledge Pack For Microsoft Exchange Server10.2.5.1024
ApplicationQuestIntrust Knowledge Pack For Microsoft Identity Integration Server10.2.5.1024
ApplicationQuestIntrust Knowledge Pack For Microsoft Iis10.2.5.1024
ApplicationQuestIntrust Knowledge Pack For Microsoft Isa Server10.2.5.1024