Quest develops a portfolio of systems-management and backup appliances widely deployed in enterprise environments, including disk-backup, NetVault Backup, and KACE systems-management platforms that handle privileged administrative functions and sensitive data. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the high-value, often internet-exposed nature of administrative and backup infrastructure. The recurring weakness classes—including OS command injection, SQL injection, cross-site scripting, improper permission assignment, and input-validation flaws—are characteristic of appliance-oriented software where administrative interfaces and data-handling pipelines present broad attack surfaces. Defenders should treat Quest advisories as high-priority, inventory affected appliances carefully, and apply patches promptly to administrative and backup tiers; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Quest over time
Signals from CVEs in this vendor scope (145 CVEs).
145 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-11138CRITICAL The '/common/download_agent_installer.php' script in the Quest KACE System Management Appliance 8.0.318 is accessible by anonymous users and can be abused to execute arbitrary comm | May 31, 2018 | 9.8 | 99 | YES | YES |
CVE-2012-5896HIGH The Annotation Objects Extension ActiveX control in AnnotateX.dll in Quest InTrust 10.4.0.853 and earlier does not properly implement the Add method, which allows remote attackers | Nov 17, 2012 | 10.0 | 82 | NO | YES |
CVE-2025-32975CRITICAL Quest KACE Systems Management Appliance (SMA) 13.0.x before 13.0.385, 13.1.x before 13.1.81, 13.2.x before 13.2.183, 14.0.x before 14.0.341 (Patch 5), and 14.1.x before 14.1.101 (P | Jun 24, 2025 | 10.0 | 75 | YES | NO |
CVE-2017-6553CRITICAL Buffer Overflow in Quest One Identity Privilege Manager for Unix before 6.0.0.061 allows remote attackers to obtain full access to the policy server via an ACT_ALERT_EVENT request | Apr 29, 2017 | 9.8 | 72 | NO | YES |
CVE-2018-1161CRITICAL This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.2.0.13. Authentication is not required to exploit this | Feb 8, 2018 | 9.8 | 65 | NO | NO |
CVE-2017-17420CRITICAL This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is not required to exploit this | Feb 8, 2018 | 9.8 | 53 | NO | NO |
CVE-2018-11139HIGH The '/common/ajax_email_connection_test.php' script in the Quest KACE System Management Appliance 8.0.318 is accessible by any authenticated user and can be abused to execute arbit | May 31, 2018 | 8.8 | 49 | NO | NO |
CVE-2018-11143CRITICAL Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 1 of 46). | Jun 2, 2018 | 9.8 | 48 | NO | NO |
CVE-2017-17417CRITICAL This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is not required to exploit this | Feb 8, 2018 | 9.8 | 46 | NO | YES |
CVE-2018-5406HIGH The Quest Kace K1000 Appliance, versions prior to 9.0.270, allows a remote attacker to exploit the misconfigured Cross-Origin Resource Sharing (CORS) mechanism. An unauthenticated, | Jun 3, 2019 | 8.8 | 43 | NO | YES |
Signals from CVEs in this vendor scope (145 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Quest.
Media articles that mention a CVE ID that affects a product developed by Quest — matched by CVE ID, not by vendor name.