CVE-2024-9844

7.1HIGH

Insufficient server-side controls in Secure Application Manager of Ivanti Connect Secure before version 22.7R2.4 allows a remote authenticated attacker to bypass restrictions.

Published: 12/10/2024Updated: 1/17/2025

Description

Insufficient server-side controls in Secure Application Manager of Ivanti Connect Secure before version 22.7R2.4 allows a remote authenticated attacker to bypass restrictions.

AI AnalysisPowered by AI

Affected Products

ivanticonnect_secure
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7
ivanticonnect_secure
22.7

References