CVE Vulnerabilities

CVE-2019-10651

Published: Jul 11, 2019 | Modified: Nov 21, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An issue was discovered in the Core Server in Ivanti Endpoint Manager (EPM) 2017.3 before SU7 and 2018.x before 2018.3 SU3, with remote code execution. In other words, the issue affects 2017.3, 2018.1, and 2018.3 installations that lack the April 2019 update.

Affected Software

NameVendorStart VersionEnd Version
Endpoint_managerIvanti2017.3 (including)2017.3 (including)
Endpoint_managerIvanti2018.1 (including)2018.1 (including)
Endpoint_managerIvanti2018.3 (including)2018.3 (including)

References