An issue was discovered in Ivanti Workspace Control before 10.3.90.0. Local authenticated users with low privileges in a Workspace Control managed session can bypass Workspace Control security features configured for this session by resetting the session context.
References
Configurations
Information
Published : 2019-04-05 10:29
Updated : 2020-03-18 10:15
NVD link : CVE-2019-10885
Mitre link : CVE-2019-10885
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
ivanti
- workspace_control