EXPOSURES › CVE-2018-11138
CVE-2018-11138
CRITICAL ⌖ ON CISA KEV · EXPLOITED
DETAIL
⚡ RCE
⌖ EXPLOITED IN THE WILD
SHAME 95/100
ransomwarerceexploited-in-wild
A publicly accessible script in Quest KACE appliances allowed anonymous users to execute arbitrary code remotely, actively exploited by ransomware groups.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
PLAYERS IMPLICATED
DESCRIPTION
The '/common/download_agent_installer.php' script in the Quest KACE System Management Appliance is accessible by anonymous users and can be abused to perform remote code execution.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.