ZeroHour

CVE-2021-42130

CVSS 3.1
8.8 high
EPSS
62%p99
Published
()
Modified
Description

A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary code execution.

Vendors
ivanti
Products
avalanche
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.