Description


By abusing the 'install rpm url' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.

Related CPE's


a

ivanti

mobileiron

2

Weaknesses



CWE-78


CWE-78

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

6.5 · Medium

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2021-07-22T17:15:09.097Z

4 years ago

Last modified

2024-11-21T05:21:07.707Z

1 year ago