CVE-2022-30121
EUVD-2022-3533223.09.2022, 14:15
The “LANDesk(R) Management Agent” service exposes a socket and once connected, it is possible to launch commands only for signed executables. This is a security bug that allows a limited user to get escalated admin privileges on their system.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ivanti | endpoint_manager | 𝑥 < 2021.1.1 |
| ivanti | endpoint_manager | 2021.1.1 |
| ivanti | endpoint_manager | 2021.1.1:su1 |
| ivanti | endpoint_manager | 2021.1.1:su2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration