VDB

CVE-2021-44529

CVE-2021-44529 PUBLISHED KEV CVSS 7.5 HIGH

A code injection vulnerability in the Ivanti EPM Cloud Services Appliance (CSA) allows an unauthenticated user to execute arbitrary code with limited permissions (nobody).

EPSS 94.46% · 100.0th percentile

Risk Scores

CVSS v2.0
7.5
EPSS Score
94.46%
100.0th percentile

Affected Products

VendorProductVersions
ivantiendpoint_manager_cloud_services_appliance0
n/aIvanti EPM4.6.0-512
ivantiendpoint_manager_cloud_services_appliance0, 4.6

Timeline

  • CVE Published
  • Jan 21, 1970 CrowdSec Sighting
  • Jan 21, 1970 CrowdSec Sighting
  • Jan 21, 1970 CrowdSec Sighting
  • Jan 21, 1970 CrowdSec Sighting
  • Jan 21, 1970 CrowdSec Sighting
  • Jan 21, 1970 CrowdSec Sighting
  • Jan 21, 1970 CrowdSec Sighting
  • May 14, 2021 CrowdSec Sighting
  • Jun 10, 2021 CrowdSec Sighting
  • Oct 21, 2021 CrowdSec Sighting
  • Dec 9, 2021 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›