VYPR

Wavelink Avalanche Manager

by Ivanti

CVEs (2)

  • CVE-2023-32560CriAug 10, 2023
    risk 0.75cvss 9.8epss 0.99

    An attacker can send a specially crafted message to the Wavelink Avalanche Manager, which could result in service disruption or arbitrary code execution. Thanks to a Researcher at Tenable for finding and reporting. Fixed in version 6.4.1.

  • CVE-2023-38036CriJul 12, 2025
    risk 0.64cvss 9.8epss 0.02

    A security vulnerability within Ivanti Avalanche Manager before version 6.4.1 may allow an unauthenticated attacker to create a buffer overflow that could result in service disruption or arbitrary code execution.