CVE Vulnerabilities

CVE-2019-10651

Published: Jul 11, 2019 | Modified: Aug 24, 2020
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in the Core Server in Ivanti Endpoint Manager (EPM) 2017.3 before SU7 and 2018.x before 2018.3 SU3, with remote code execution. In other words, the issue affects 2017.3, 2018.1, and 2018.3 installations that lack the April 2019 update.

Affected Software

Name Vendor Start Version End Version
Endpoint_manager Ivanti 2017.3 (including) 2017.3 (including)
Endpoint_manager Ivanti 2018.1 (including) 2018.1 (including)
Endpoint_manager Ivanti 2018.3 (including) 2018.3 (including)

References