CVE-2020-13772

Publication date

2020-11-16 15:24:46

Family

mitre

State

PUBLISHED

Description

In /ldclient/ldprov.cgi in Ivanti Endpoint Manager through 2020.1.1, an attacker is able to disclose information about the server operating system, local pathnames, and environment variables with no authentication required.