CVE-2021-42128: Critical severity ivanti avalanche vulnerability
Published Dec 7, 2021
·Updated
An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 using inforail Service allows Privilege Escalation via Enterprise Server Service.
Affected Software
1 affected component
Ivanti Avalanche<6.3.3
Event History
Dec 7, 2021
CVE Published
via MITRE·01:13 PM
Data Sourced
via MITRE·01:13 PM
DescriptionWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-42128?
CVE-2021-42128 is an exposed dangerous function vulnerability in Ivanti Avalanche before version 6.3.3.
2
How severe is CVE-2021-42128?
CVE-2021-42128 has a severity rating of 9.8 (Critical).
3
How can I fix CVE-2021-42128?
To fix CVE-2021-42128, upgrade to Ivanti Avalanche version 6.3.3 or later.
4
What is Ivanti Avalanche?
Ivanti Avalanche is a software program used for managing mobile devices and network infrastructure.
5
Where can I find more information about CVE-2021-42128?
More information about CVE-2021-42128 can be found on the Ivanti forums at https://forums.ivanti.com/s/article/Security-Alert-CVE-s-Addressed-in-Avalanche-6-3-3.