Unrated severityNVD Advisory· Published Jul 12, 2025· Updated Jul 14, 2025
CVE-2024-38648
CVE-2024-38648
Description
A hardcoded secret in Ivanti DSM before 2024.2 allows an authenticated attacker on an adjacent network to decrypt sensitive data including user credentials.
Affected products
2- Ivanti/DSMv5Range: 2024.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.