Home
CRITICAL: 9.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HDefault status
unaffected
Any version before 14.0.97
affected
14.1.0 (custom) before 14.1.19
affected
Description
The agent in Quest KACE Systems Management Appliance (SMA) before 14.0.97 and 14.1.x before 14.1.19 potentially allows privilege escalation on managed systems.
Problem types
CWE-863 Incorrect Authorization
Product status
Any version before 14.0.97
14.1.0 (custom) before 14.1.19
References
support.quest.com/...-sma-agent-vulnerability-cve-2025-26850