CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2021-44529

KEV · ransomware Critical · CVSS 9.8
CVSS
9.8
nvd
EPSS
KEV
Listed
ransomware
Class
other
CWE-94, CWE-94

Description

A code injection vulnerability in the Ivanti EPM Cloud Services Appliance (CSA) allows an unauthenticated user to execute arbitrary code with limited permissions (nobody).

References

Status: profiled · ingested 2026-08-04T06:00:54.000Z