Vulnerabilities
Vulnerable Software
Ivanti:  >> Avalanche  >> 6.2.2  Security Vulnerabilities
A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary code execution.
CVSS Score
8.8
EPSS Score
0.767
Published
2021-12-07
A SQL Injection vulnerability exists in Ivanti Avalance before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.
CVSS Score
8.8
EPSS Score
0.373
Published
2021-12-07
A command Injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution.
CVSS Score
8.8
EPSS Score
0.745
Published
2021-12-07
An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform an arbitrary file write.
CVSS Score
8.1
EPSS Score
0.144
Published
2021-12-07


Contact Us

Shodan ® - All rights reserved