Show filters
19 Total Results
Displaying 11-19 of 19
Sort by:
Attacker Value
Unknown
CVE-2019-17066
Disclosure Date: May 18, 2020 (last updated February 21, 2025)
In Ivanti WorkSpace Control before 10.4.40.0, a user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an application with elevated rights.
0
Attacker Value
Unknown
CVE-2020-11533
Disclosure Date: April 04, 2020 (last updated November 27, 2024)
Ivanti Workspace Control before 10.4.30.0, when SCCM integration is enabled, allows local users to obtain sensitive information (keying material).
0
Attacker Value
Unknown
CVE-2019-16382
Disclosure Date: March 19, 2020 (last updated November 27, 2024)
An issue was discovered in Ivanti Workspace Control 10.3.110.0. One is able to bypass Ivanti's FileGuard folder protection by renaming the WMTemp work folder used by PowerGrid. A malicious PowerGrid XML file can then be created, after which the folder is renamed back to its original value. Also, CVE-2018-15591 exploitation can consequently be achieved by using PowerGrid with the /SEE parameter to execute the arbitrary command specified in the XML file.
0
Attacker Value
Unknown
CVE-2019-19675
Disclosure Date: August 30, 2019 (last updated November 27, 2024)
In Ivanti Workspace Control before 10.3.180.0. a locally authenticated user with low privileges can bypass Managed Application Security by leveraging an unspecified attack vector in Workspace Preferences, when it is enabled. As a result, the attacker can start applications that should be blocked.
0
Attacker Value
Unknown
CVE-2019-10885
Disclosure Date: April 05, 2019 (last updated November 27, 2024)
An issue was discovered in Ivanti Workspace Control before 10.3.90.0. Local authenticated users with low privileges in a Workspace Control managed session can bypass Workspace Control security features configured for this session by resetting the session context.
0
Attacker Value
Unknown
CVE-2018-15590
Disclosure Date: October 15, 2018 (last updated November 27, 2024)
An issue was discovered in Ivanti Workspace Control before 10.3.0.0 and RES One Workspace, when file and folder security are configured. A local authenticated user can bypass file and folder security restriction by leveraging an unspecified attack vector.
0
Attacker Value
Unknown
CVE-2018-15593
Disclosure Date: October 15, 2018 (last updated November 27, 2024)
An issue was discovered in Ivanti Workspace Control before 10.3.10.0 and RES One Workspace. A local authenticated user can decrypt the encrypted datastore or relay server password by leveraging an unspecified attack vector.
0
Attacker Value
Unknown
CVE-2018-15592
Disclosure Date: October 15, 2018 (last updated November 27, 2024)
An issue was discovered in Ivanti Workspace Control before 10.3.10.0 and RES One Workspace. A local authenticated user can execute processes with elevated privileges via an unspecified attack vector.
0
Attacker Value
Unknown
CVE-2018-15591
Disclosure Date: October 15, 2018 (last updated November 27, 2024)
An issue was discovered in Ivanti Workspace Control before 10.3.10.0 and RES One Workspace. A local authenticated user can bypass Application Whitelisting restrictions to execute arbitrary code by leveraging multiple unspecified attack vectors.
0