CVE-2019-12373: Critical severity landesk server manager vulnerability
Improper access control and open directories in Ivanti LANDESK Management Suite (LDMS, aka Endpoint Manager) 10.0.1.168 Service Update 5 may lead to remote disclosure of administrator passwords.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-12373?
CVE-2019-12373 is considered a high severity vulnerability due to its potential for remote disclosure of sensitive administrator passwords.
How do I fix CVE-2019-12373?
To fix CVE-2019-12373, update Ivanti LANDESK Management Suite to the latest version that addresses the improper access control issues.
What are the risks associated with CVE-2019-12373?
The risks associated with CVE-2019-12373 include unauthorized access to administrator credentials, leading to potential system compromise.
Is CVE-2019-12373 specific to certain versions of Ivanti LANDESK Management Suite?
Yes, CVE-2019-12373 specifically affects Ivanti LANDESK Management Suite version 10.0.1.168 Service Update 5.
What type of vulnerability is CVE-2019-12373?
CVE-2019-12373 is categorized as an access control vulnerability and involves improper handling of open directories.