Source |
The Hacker News |
Identifiant |
8638134 |
Date de publication |
2025-01-16 12:09:00 (vue: 2025-01-16 08:08:07) |
Titre |
Researcher Uncovers Critical Flaws in Multiple Versions of Ivanti Endpoint Manager |
Texte |
Ivanti has rolled out security updates to address several security flaws impacting Avalanche, Application Control Engine, and Endpoint Manager (EPM), including four critical bugs that could lead to information disclosure.
All the four critical security flaws, rated 9.8 out of 10.0 on the CVSS scale, are rooted in EPM, and concern absolute path traversal flaws that allow a remote unauthenticated
Ivanti has rolled out security updates to address several security flaws impacting Avalanche, Application Control Engine, and Endpoint Manager (EPM), including four critical bugs that could lead to information disclosure.
All the four critical security flaws, rated 9.8 out of 10.0 on the CVSS scale, are rooted in EPM, and concern absolute path traversal flaws that allow a remote unauthenticated |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
absolute address all allow application are avalanche bugs concern control could critical cvss disclosure endpoint engine epm flaws four has impacting including information ivanti lead manager multiple out path rated remote researcher rolled rooted scale security several traversal unauthenticated uncovers updates versions |
Tags |
|
Stories |
|
Move |
|