First published: Wed Jun 02 2021(Updated: )
By abusing the 'install rpm url' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.
Credit: cve@rapid7.con
Affected Software | Affected Version | How to fix |
---|---|---|
Ivanti MobileIron | <=10.7.0.1-9 | |
Ivanti MobileIron | >=11.0.0.0<11.1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.