An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remove code execution.
2023-12-19T16:15:11.493
2024-11-21T08:28:12.067
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ivanti | avalanche | < 6.4.2 | Yes |
Operating System | microsoft | windows | - | No |