BACK TO INTEL

Archives

Classification

Clear Filter
Application Security
Cloud Infrastructure
Enterprise Infrastructure
Enterprise IT Infrastructure
Enterprise Networking
Citrix ADC & Gateway
VPN Gateways
Command Injection Vulnerability
Enterprise Security
Enterprise Software
ERP
Information Technology
Infrastructure
Infrastructure Security
Microsoft
Network Appliances
Network Infrastructure
Network Security
Networking
Open Source
Operating Systems
Software
Software Development
Software Security
Technology
Virtualization
Vulnerability
Web Hosting
Web Security
Windows Ecosystem

FeedVPN Gateways

Verified advisories, vulnerability disclosures, and architectural research.

CVE-2024-21887

CVE-2024-21887: Critical Ivanti Connect Secure Command Injection Vulnerability Advisory

Ivanti Connect Secure (ICS) and Ivanti Policy Secure contain a command injection vulnerability (CVE-2024-21887) in web components, allowing authenticated administrators to execute arbitrary commands. This is frequently chained with CVE-2023-46805 for unauthenticated access.

Connect Secure and Policy Secure
View Detail