Unrated severityNVD Advisory· Published Jan 31, 2024· Updated Dec 16, 2025
CVE-2024-21888
CVE-2024-21888
Description
A privilege escalation vulnerability in web component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows a user to elevate privileges to that of an administrator.
Affected products
4- Range: 9.x, 22.x
- Range: 9.x, 22.x
- Ivanti/ICSv5Range: 9.1R18
- Ivanti/IPSv5Range: 9.1R18
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.