Dell Kace K2000 is prone to multiple remote vulnerabilities including an information-disclosure issue, a backdoor issue, multiple cross-site scripting issues and a remote command-execution issue.
An attacker can exploit these issues to execute arbitrary script code in the context of the vulnerable site, potentially allowing the attacker to steal cookie-based authentication credentials, gain access to sensitive information, or execute arbitrary commands with root privileges. Other attacks may also be possible.
Vendor Status:
Dell had issues an update for this vulnerability