ZeroHour

CVE-2021-42125

CVSS 3.1
8.8 high
EPSS
82%p100
Published
()
Modified
Description

An unrestricted file upload vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to write dangerous files.

Vendors
ivanti
Products
avalanche
Weakness
CWE-502, CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.