An issue was discovered in Ivanti Workspace Control before 10.3.90.0. Local authenticated users with low privileges in a Workspace Control managed session can bypass Workspace Control security features configured for this session by resetting the session context.
References
Configurations
History
21 Nov 2024, 04:20
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/156792/Ivanti-Workspace-Manager-Security-Bypass.html - | |
References | () https://community.ivanti.com/docs/DOC-74552 - Vendor Advisory |
Information
Published : 2019-04-05 17:29
Updated : 2024-11-21 04:20
NVD link : CVE-2019-10885
Mitre link : CVE-2019-10885
CVE.ORG link : CVE-2019-10885
JSON object : View
Products Affected
ivanti
- workspace_control
CWE
CWE-264
Permissions, Privileges, and Access Controls