Ivanti EPM Cloud Services Appliance (CSA) before version 4.6.0-512 is susceptible to a code injection vulnerability because it allows an unauthenticated user to execute arbitrary code with limited permissions (nobody).
id: CVE-2021-44529
info:
name: Ivanti EPM Cloud Services Appliance Code Injection
author: duty_
...