VYPR
Unrated severityCISA KEVNVD Advisory· Published Jan 8, 2025· Updated Oct 21, 2025

CVE-2025-0282

CVE-2025-0282

Description

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve remote code execution.

Affected products

3
  • Ivanti/Connect Securev5
    Range: 22.7R2
  • Ivanti/Policy Securev5
    Range: 22.7R1
  • Ivanti/Neurons for ZTA gatewaysv5
    Range: 22.7R2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.