First published: Fri Jan 07 2022(Updated: )
A insecure storage of sensitive information vulnerability exists in Ivanti Workspace Control <2021.2 (10.7.30.0) that could allow an attacker with locally authenticated low privileges to obtain key information due to an unspecified attack vector.
Credit: support@hackerone.com support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ivanti Workspace Control | <10.7.30.0 | |
<10.7.30.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-21823 is medium with a CVSS score of 5.5.
The vulnerability is an insecure storage of sensitive information vulnerability.
The vulnerability occurs due to an unspecified attack vector.
Users of Ivanti Workspace Control versions prior to 2021.2 (10.7.30.0) are affected.
A locally authenticated attacker with low privileges can exploit the vulnerability to obtain key information.