Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-30121


The “LANDesk(R) Management Agent” service exposes a socket and once connected, it is possible to launch commands only for signed executables. This is a security bug that allows a limited user to get escalated admin privileges on their system.


Published

2022-09-23T14:15:12.273

Last Modified

2025-05-22T21:15:22.567

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.7 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-269

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ivanti endpoint_manager < 2021.1.1 Yes
Application ivanti endpoint_manager 2021.1.1 Yes
Application ivanti endpoint_manager 2021.1.1 Yes
Application ivanti endpoint_manager 2021.1.1 Yes

References