By abusing the 'install rpm info detail' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: rapid7

Published: 2021-06-02T00:00:00

Updated: 2021-07-22T18:27:21

Reserved: 2021-05-06T00:00:00


Link: CVE-2021-3540

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-07-22T19:15:09.160

Modified: 2021-08-04T12:21:08.463


Link: CVE-2021-3540

JSON object: View

cve-icon Redhat Information

No data.

CWE