CVE-2019-13081

Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the title field in the /common/ticket_associated_tickets.php service desk ticket functionality) that allows an authenticated user to execute arbitrary JavaScript in a service desk user’s browser.

Date published : 2019-11-06

https://support.quest.com/kb/311388/quest-response-to-certezza-vulnerability-report

https://www.quest.com/products/kace-systems-management-appliance/