VYPR
Unrated severityNVD Advisory· Published May 13, 2025· Updated May 13, 2025

CVE-2025-22462

CVE-2025-22462

Description

An authentication bypass in Ivanti Neurons for ITSM (on-prem only) before 2023.4, 2024.2 and 2024.3 with the May 2025 Security Patch allows a remote unauthenticated attacker to gain administrative access to the system.

Affected products

2
  • Ivanti/Neurons for ITSMllm-create2 versions
    before 2023.4, 2024.2, and 2024.3+ 1 more
    • (no CPE)range: before 2023.4, 2024.2, and 2024.3
    • (no CPE)range: 2023.4 w/ May 2025 Security Patch

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.