CVE-2021-44031 is a vulnerability in Quest Software Kace Desktop Authority
Published on December 22, 2021
An issue was discovered in Quest KACE Desktop Authority before 11.2. /dacomponentui/profiles/profileitems/outlooksettings/Insertimage.aspx contains a vulnerability that could allow pre-authentication remote code execution. An attacker could upload a .ASP file to reside at /images/{GUID}/{filename}.
Products Associated with CVE-2021-44031
Want to know whenever a new CVE is published for Quest Software Kace Desktop Authority? stack.watch will email you.
Exploit Probability
EPSS
2.87%
Percentile
86.05%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.