By abusing the 'install rpm info detail' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: rapid7

Published: 2021-07-22T18:27:21.040230Z

Updated: 2024-09-17T00:30:44.288Z

Reserved: 2021-05-06T00:00:00

Link: CVE-2021-3540

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-07-22T19:15:09.160

Modified: 2021-08-04T12:21:08.463

Link: CVE-2021-3540

cve-icon Redhat

No data.