CVE-2019-12374 is a vulnerability in Ivanti Landesk Management Suite
Published on June 3, 2019
A SQL Injection vulnerability exists in Ivanti LANDESK Management Suite (LDMS, aka Endpoint Manager) 10.0.1.168 Service Update 5 due to improper username sanitization in the Basic Authentication implementation in core/provisioning.secure/ProvisioningSecure.asmx in Provisioning.Secure.dll.
Products Associated with CVE-2019-12374
Want to know whenever a new CVE is published for Ivanti Landesk Management Suite? stack.watch will email you.
Exploit Probability
EPSS
0.66%
Percentile
70.69%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.