Loading
XXE can occur in Quest KACE Desktop Authority before 11.2 because the log4net configuration file might be controlled by an attacker, a related issue to CVE-2018-1285.
Use CWE-611, Quest vendor hub and Kace Desktop Authority product page to widen CVE-2021-44028 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-44031, CVE-2021-44029 and CVE-2021-44030 for nearby disclosures in the same product family.