dell-kace-k1000

1 article
sort: new top best
clear filter
0 8/10

Unauthenticated RCE in Dell KACE K1000 via the /service/krashrpt.php endpoint exploiting inadequate input sanitization in older versions (6.3.113397) where basename() and escapeshellarg() protections were absent, allowing arbitrary command execution through unzip parameters and potential lateral movement to all managed endpoints.

Dell KACE K1000 K1-18652 Quest Software Inc Dropbox H1-3120 Julien Ahrens /service/krashrpt.php
rcesecurity.com · devanshbatham/Awesome-Bugbounty-Writeups · 19 hours ago · details