cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2022-44574,https://securityvulnerability.io/vulnerability/CVE-2022-44574,,An improper authentication vulnerability exists in Avalanche version 6.3.x and below allows unauthenticated attacker to modify properties on specific port.,Ivanti,Ivanti Avalanche,7.5,HIGH,0.0076299998909235,false,false,false,false,,false,false,2023-03-10T00:00:00.000Z,0 CVE-2021-42133,https://securityvulnerability.io/vulnerability/CVE-2021-42133,,An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform an arbitrary file write.,Ivanti,Ivanti Avalanche,8.1,HIGH,0.00107999995816499,false,false,false,false,,false,false,2021-12-07T13:13:35.000Z,0 CVE-2021-42132,https://securityvulnerability.io/vulnerability/CVE-2021-42132,,A command Injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution.,Ivanti,Ivanti Avalanche,8.8,HIGH,0.04204000160098076,false,false,false,false,,false,false,2021-12-07T13:13:29.000Z,0 CVE-2021-42131,https://securityvulnerability.io/vulnerability/CVE-2021-42131,,A SQL Injection vulnerability exists in Ivanti Avalance before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.,Ivanti,Ivanti Avalanche,8.8,HIGH,0.007430000230669975,false,false,false,false,,false,false,2021-12-07T13:13:24.000Z,0 CVE-2021-42130,https://securityvulnerability.io/vulnerability/CVE-2021-42130,,A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary code execution.,Ivanti,Ivanti Avalanche,8.8,HIGH,0.00610999995842576,false,false,false,false,,false,false,2021-12-07T13:13:19.000Z,0 CVE-2021-42129,https://securityvulnerability.io/vulnerability/CVE-2021-42129,,A command injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution.,Ivanti,Ivanti Avalanche,8.8,HIGH,0.04204000160098076,false,false,false,false,,false,false,2021-12-07T13:13:14.000Z,0 CVE-2021-42128,https://securityvulnerability.io/vulnerability/CVE-2021-42128,,An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 using inforail Service allows Privilege Escalation via Enterprise Server Service.,Ivanti,Ivanti Avalanche,9.8,CRITICAL,0.01090999972075224,false,false,false,false,,false,false,2021-12-07T13:13:10.000Z,0 CVE-2021-42127,https://securityvulnerability.io/vulnerability/CVE-2021-42127,,A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 using Inforail Service allows arbitrary code execution via Data Repository Service.,Ivanti,Ivanti Avalanche,9.8,CRITICAL,0.007550000213086605,false,false,false,false,,false,false,2021-12-07T13:13:01.000Z,0 CVE-2021-42126,https://securityvulnerability.io/vulnerability/CVE-2021-42126,,An improper authorization control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.,Ivanti,Ivanti Avalanche,8.8,HIGH,0.0013200000394135714,false,false,false,false,,false,false,2021-12-07T13:12:56.000Z,0 CVE-2021-42124,https://securityvulnerability.io/vulnerability/CVE-2021-42124,,An improper access control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform a session takeover.,Ivanti,Ivanti Avalanche,8.8,HIGH,0.0010900000343099236,false,false,false,false,,false,false,2021-12-07T13:12:44.000Z,0