CVE-2024-10644
Code injection in Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy Secure before version 22.7R1.3 allows
Code injection in Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy Secure before version 22.7R1.3 allows a remote authenticated attacker with admin privileges to achieve remote code execution.
CRITICAL · CVSS 9.1
EPSS 0.03984
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0