← Back

Kace K2000 Systems Deployment Appliance

kace_k2000_systems_deployment_appliance

Vendor: Dell • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Dell
1Kace K2000 Systems Deployment Appliance
Apr 29, 2026
Nov 12, 2011
N/A· v4
N/A· v3
3.5 LOW· v2
Multiple cross-site scripting (XSS) vulnerabilities in the administrative web interface on the Dell KACE K2000 System Deployment Appliance allow remote attackers to inject arbitrary web script or HTML via unspecified vec...Show more
Multiple cross-site scripting (XSS) vulnerabilities in the administrative web interface on the Dell KACE K2000 System Deployment Appliance allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.Show less
1Dell
1Kace K2000 Systems Deployment Appliance
Apr 29, 2026
Nov 12, 2011
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The Dell KACE K2000 System Deployment Appliance has a default username and password for the read-only reporting account, which makes it easier for remote attackers to obtain sensitive information from the database by lev...Show more
The Dell KACE K2000 System Deployment Appliance has a default username and password for the read-only reporting account, which makes it easier for remote attackers to obtain sensitive information from the database by leveraging the default credentials.Show less
1Dell
1Kace K2000 Systems Deployment Appliance
Apr 29, 2026
Nov 12, 2011
N/A· v4
N/A· v3
9.3 HIGH· v2
The Dell KACE K2000 System Deployment Appliance allows remote attackers to execute arbitrary commands by leveraging database write access.
1Dell
1Kace K2000 Systems Deployment Appliance
Apr 29, 2026
Nov 12, 2011
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Dell KACE K2000 System Deployment Appliance stores the recovery account password in cleartext within a PHP script, which allows context-dependent attackers to obtain sensitive information by examining script source c...Show more
The Dell KACE K2000 System Deployment Appliance stores the recovery account password in cleartext within a PHP script, which allows context-dependent attackers to obtain sensitive information by examining script source code.Show less
1Dell
1Kace K2000 Systems Deployment Appliance
Apr 29, 2026
Apr 10, 2011
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Dell KACE K2000 Systems Deployment Appliance 3.3.36822 and earlier contains a peinst CIFS share, which allows remote attackers to obtain sensitive information by reading the (1) unattend.xml or (2) sysprep.inf file,...Show more
The Dell KACE K2000 Systems Deployment Appliance 3.3.36822 and earlier contains a peinst CIFS share, which allows remote attackers to obtain sensitive information by reading the (1) unattend.xml or (2) sysprep.inf file, as demonstrated by reading a password.Show less