VYPR
High severity8.8NVD Advisory· Published Dec 10, 2024· Updated Jun 17, 2026

CVE-2024-8540

CVE-2024-8540

Description

Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker to modify sensitive application components.

Affected products

4
  • cpe:2.3:a:ivanti:standalone_sentry:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ivanti:standalone_sentry:*:*:*:*:*:*:*:*range: <9.20.2
    • cpe:2.3:a:ivanti:standalone_sentry:10.0.1:*:*:*:*:*:*:*
  • Ivanti/Sentryllm-fuzzy2 versions
    <9.20.2, <10.0.2, <10.1.0+ 1 more
    • (no CPE)range: <9.20.2, <10.0.2, <10.1.0
    • (no CPE)range: 9.20.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.