VYPR
High severity8.8NVD Advisory· Published Nov 6, 2019· Updated Jun 17, 2026

CVE-2019-13078

CVE-2019-13078

Description

Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has the ability to execute arbitrary commands against the database. The affected component is /common/user_profile.php. The affected parameter is sort_column.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:quest:kace_systems_management_appliance:9.1.317:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:quest:kace_systems_management_appliance:9.1.317:*:*:*:*:*:*:*
    • (no CPE)range: 9.1.317
  • Quest/KACE Systems Management Appliance Server Centerdescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.