In Ivanti Workspace Control before 10.3.180.0. a locally authenticated user with low privileges can bypass Managed Application Security by leveraging an unspecified attack vector in Workspace Preferences, when it is enabled. As a result, the attacker can start applications that should be blocked.
References
Configurations
Information
Published : 2019-12-17 07:15
Updated : 2019-12-27 06:54
NVD link : CVE-2019-19675
Mitre link : CVE-2019-19675
JSON object : View
CWE
CWE-276
Incorrect Default Permissions
Products Affected
ivanti
- workspace_control