CVE-2021-3540
PoC —CVSS 3.1
7.2 high
EPSS
3%p88
Published
()
Modified
Description
By abusing the 'install rpm info detail' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.
- Vendors
- ivanti
- Products
- mobileiron
- Weakness
- CWE-88
- Vector
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.