VYPR
High severity8.2NVD Advisory· Published Sep 10, 2024· Updated Jun 17, 2026

CVE-2024-44105

CVE-2024-44105

Description

Cleartext transmission of sensitive information in the management console of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows a local authenticated attacker to obtain OS credentials.

Affected products

3
  • Ivanti/Workspace Controlllm-fuzzy3 versions
    <2025.2 (10.19.0.0)+ 2 more
    • (no CPE)range: <2025.2 (10.19.0.0)
    • cpe:2.3:a:ivanti:workspace_control:*:*:*:*:*:*:*:*range: <10.18.99.0
    • (no CPE)range: 10.19.0.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.