Unrated severityCISA KEVNVD Advisory· Published Oct 8, 2024· Updated Oct 21, 2025
CVE-2024-9380
CVE-2024-9380
Description
An OS command injection vulnerability in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with admin privileges to obtain remote code execution.
Affected products
1- Ivanti/CSA (Cloud Services Appliance)v5Range: 5.0.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.