CVE-2021-44529
Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
A code injection vulnerability in the Ivanti EPM Cloud Services Appliance (CSA) allows an unauthenticated user to execute arbitrary code with limited permissions (nobody).
Affected Platforms (CPE)
📦
Ivanti
Endpoint Manager Cloud Services Appliance
<= 4.5📦
Ivanti
