VYPR
Medium severity5.9NVD Advisory· Published May 9, 2023· Updated Jun 17, 2026

CVE-2023-28125

CVE-2023-28125

Description

An improper authentication vulnerability exists in Avalanche Premise versions 6.3.x and below that could allow an attacker to gain access to the server by registering to receive messages from the server and perform an authentication bypass.

Affected products

3
  • cpe:2.3:a:ivanti:avalanche:*:*:*:*:premise:*:*:*
    Range: <=6.3.4.153
  • Avalanche Premise/Avalanche Premisedescription
  • Range: <=6.3.x

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.