ZeroHour

CVE-2021-3198

PoC
CVSS 3.1
7.2 high
EPSS
3%p88
Published
()
Modified
Description

By abusing the 'install rpm url' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.

Vendors
ivanti
Products
mobileiron
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.