ZeroHour

CVE-2021-42126

CVSS 3.1
8.8 high
EPSS
4%p90
Published
()
Modified
Description

An improper authorization control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.

Vendors
ivanti
Products
avalanche
Weakness
CWE-285
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.