Unrated severityNVD Advisory· Published Nov 13, 2024· Updated Nov 19, 2024
CVE-2024-37376
CVE-2024-37376
Description
SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Update allows a remote authenticated attacker with admin privileges to achieve remote code execution.
Affected products
2- Range: before 2024 November Security Update or 2022 SU6 November Security Update
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.