Medium severity6.1NVD Advisory· Published Mar 1, 2023· Updated Jun 17, 2026
CVE-2022-38220
CVE-2022-38220
Description
An XSS vulnerability exists within Quest KACE Systems Management Appliance (SMA) through 12.1 that may allow remote injection of arbitrary web script or HTML.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:quest:kace_systems_management_appliance:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:quest:kace_systems_management_appliance:*:*:*:*:*:*:*:*range: <=12.1
- (no CPE)
- (no CPE)range: <=12.1
Patches
Vulnerability mechanics
References
2- support.quest.com/kb/4368602/quest-response-to-kace-sma-vulnerability-cve-2022-38220nvdVendor Advisory
- support.quest.com/kb/339613nvdBroken Link
News mentions
0No linked articles in our index yet.