VYPR

SMA

by Quest

CVEs (2)

  • CVE-2021-32087HigJul 27, 2026
    risk 0.00cvss 8.8epss 0.00

    An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. It installs with default user credentials. The kbftp account has a password of getbxf, which is publicly known and documented. This allows remote attackers to trivially gain privileged access to…

  • CVE-2021-32085HigJul 27, 2026
    risk 0.00cvss 8.8epss 0.00

    An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. It installs with default user credentials. The report and R1 MySQL accounts have a password of box747, which is publicly known and documented. This allows remote attackers to trivially gain…