Critical severity9.8NVD Advisory· Published Mar 9, 2020· Updated Jun 17, 2026
CVE-2019-20504
CVE-2019-20504
Description
service/krashrpt.php in Quest KACE K1000 Systems Management Appliance before 6.4 SP3 (6.4.120822) allows a remote attacker to execute code via shell metacharacters in the kuid parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:quest:kace_systems_management:*:*:*:*:*:*:*:*Range: <6.4.120822
- Quest KACE/K1000 Systems Management Appliancedescription
- Range: <6.4 SP3 (6.4.120822)
- Range: <6.4 SP3 (6.4.120822)
Patches
Vulnerability mechanics
References
1- www.rcesecurity.com/2019/04/dell-kace-k1000-remote-code-execution-the-story-of-bug-k1-18652/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.