VYPR
High severity8.8NVD Advisory· Published Mar 31, 2024· Updated Jun 17, 2026

CVE-2023-41724

CVE-2023-41724

Description

A command injection vulnerability in Ivanti Sentry prior to 9.19.0 allows unauthenticated threat actor to execute arbitrary commands on the underlying operating system of the appliance within the same physical or logical network.

Affected products

3
  • cpe:2.3:a:ivanti:standalone_sentry:*:*:*:*:*:*:*:*
    Range: <9.19.0
  • Ivanti/Sentryllm-fuzzy2 versions
    <9.19.0+ 1 more
    • (no CPE)range: <9.19.0
    • (no CPE)range: 9.19.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.