CVE-2021-42127

A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 using Inforail Service allows arbitrary code execution via Data Repository Service.
Configurations

Configuration 1

cpe:2.3:a:ivanti:avalanche:*:*:*:*:*:*:*:*

Information

Published : 2021-12-07 02:15

Updated : 2021-12-08 07:00


NVD link : CVE-2021-42127

Mitre link : CVE-2021-42127

Products Affected
No products.
CWE
CWE-502

Deserialization of Untrusted Data