A command injection vulnerability in MVISION EDR (MVEDR) prior to 3.4.0 allows an authenticated MVEDR administrator to trigger the EDR client to execute arbitrary commands through PowerShell using the EDR functionality 'execute reaction'.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: trellix
Published: 2021-06-29T09:45:11
Updated: 2024-08-03T23:10:30.172Z
Reserved: 2021-04-27T00:00:00
Link: CVE-2021-31838
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-06-29T10:15:08.543
Modified: 2024-11-21T06:06:19.813
Link: CVE-2021-31838
Redhat
No data.