VYPR
Unrated severityCISA KEVNVD Advisory· Published Apr 3, 2025· Updated Feb 26, 2026

CVE-2025-22457

CVE-2025-22457

Description

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways before version 22.8R2.2 allows a remote unauthenticated attacker to achieve remote code execution.

Affected products

6

Patches

Vulnerability mechanics

References

1

News mentions

1