Known vulnerabilities in Avalanche - page 5
Vendor:
Ivanti
Software:
Avalanche
Software CPE:
cpe:2.3:a:ivanti:avalanche:*:*:*:*:*:*:*:*
Website:
https://www.ivanti.com/
Total vulnerabilities:
87
Public exploits:
3
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (87)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU58816 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44228 |
CWE-94 | Critical | - | 10.12.2021 |
SB2021121003 SB2021121101 SB2021121201 and 338 more |
||
| #VU58288 - Command injection CVE-2021-42132 |
CWE-77 | High | 6.3.3.101 | 22.11.2021 |
SB2021112207 |
||
| #VU58287 - Deserialization of Untrusted Data CVE-2021-42130 |
CWE-502 | High | 6.3.3.101 | 22.11.2021 |
SB2021112207 |
||
| #VU58286 - Command injection CVE-2021-42129 |
CWE-77 | High | 6.3.3.101 | 22.11.2021 |
SB2021112207 |
||
| #VU58285 - Improper Authentication CVE-2021-42128 |
CWE-287 | Medium | 6.3.3.101 | 22.11.2021 |
SB2021112207 |
||
| #VU58284 - Deserialization of Untrusted Data CVE-2021-42127 |
CWE-502 | High | 6.3.3.101 | 22.11.2021 |
SB2021112207 |
||
| #VU27435 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2020-12442 |
CWE-89 | High | - | 29.04.2020 |
SB2020042918 |
Showing elements 81 - 100 out of 87