CVE Vulnerabilities

CVE-2021-42128

Published: Dec 07, 2021 | Modified: Aug 09, 2022
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 using inforail Service allows Privilege Escalation via Enterprise Server Service.

Affected Software

Name Vendor Start Version End Version
Avalanche Ivanti * 6.3.3 (excluding)

References