First published: Mon Jun 03 2019(Updated: )
Open directories in Ivanti LANDESK Management Suite (LDMS, aka Endpoint Manager) 10.0.1.168 Service Update 5 may lead to remote information disclosure and arbitrary code execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ivanti LANDESK Management Suite | =10.0.1.168-service_update_5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-12375 is medium with a CVSS score of 6.3.
Open directories in Ivanti LANDESK Management Suite may allow an attacker to access sensitive information and execute arbitrary code by exploiting vulnerabilities in the service.
To check if your version of Ivanti LANDESK Management Suite is affected, ensure that you are using version 10.0.1.168 Service Update 5.
To mitigate the risk of CVE-2019-12375, apply the necessary patches and updates provided by the vendor.
More information about CVE-2019-12375 can be found at the following link: [CVE-2019-12375](https://www.gnzlabs.io/gnzlabs-blog/landesk-management-server-open-directories/).