PT-2020-9866 · Ivanti · Ivanti Workspace Control

Published

2020-05-18

·

Updated

2020-05-20

·

CVE-2019-17066

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ivanti WorkSpace Control versions prior to 10.4.40.0
Description A user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an application with elevated rights.
Recommendations For versions prior to 10.4.40.0, update to version 10.4.40.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the pwrgrid.exe executable to minimize the risk of exploitation.

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-17066

Affected Products

Ivanti Workspace Control