Attackers Can Elevate Privileges via DLL Hijacking in Ivanti Workspace Control
CVE-2024-44103
7.8HIGH
What is CVE-2024-44103?
A DLL hijacking vulnerability exists in the management console of Ivanti Workspace Control versions up to 10.18.0.0. This flaw can be exploited by local authenticated attackers, granting them the ability to escalate their privileges within the affected environment. By manipulating the loading of dynamic link libraries, an attacker could execute unauthorized actions, potentially leading to broader system compromises. It is crucial for users of Ivanti Workspace Control to assess their installations and apply necessary mitigations as outlined in the security advisory provided by Ivanti.
Affected Version(s)
Workspace Control 10.18.50.0