Source |
The Hacker News |
Identifiant |
8648158 |
Date de publication |
2025-02-12 11:27:00 (vue: 2025-02-12 06:08:02) |
Titre |
Ivanti Patches Critical Flaws in Connect Secure and Policy Secure – Update Now |
Texte |
Ivanti has released security updates to address multiple security flaws impacting Connect Secure (ICS), Policy Secure (IPS), and Cloud Services Application (CSA) that could be exploited to achieve arbitrary code execution.
The list of vulnerabilities is below -
CVE-2024-38657 (CVSS score: 9.1) - External control of a file name in Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy
Ivanti has released security updates to address multiple security flaws impacting Connect Secure (ICS), Policy Secure (IPS), and Cloud Services Application (CSA) that could be exploited to achieve arbitrary code execution.
The list of vulnerabilities is below -
CVE-2024-38657 (CVSS score: 9.1) - External control of a file name in Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2024 38657 7r2 achieve address application arbitrary before below cloud code connect control could critical csa cve cvss execution exploited external file flaws has ics impacting ips ivanti list multiple name now patches policy released score: secure security services update updates version vulnerabilities |
Tags |
Vulnerability
Cloud
|
Stories |
|
Move |
|