VYPR

Standalone Sentry

by Ivanti

CVEs (3)

  • CVE-2026-10520CriKEVJun 9, 2026
    risk 0.77cvss 10.0epss 1.00

    An OS Command Injection vulnerability in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated user to achieve root-level remote code execution

  • CVE-2023-41724HigMar 31, 2024
    risk 0.58cvss 8.8epss 0.13

    A command injection vulnerability in Ivanti Sentry prior to 9.19.0 allows unauthenticated threat actor to execute arbitrary commands on the underlying operating system of the appliance within the same physical or logical network.

  • CVE-2024-8540HigDec 10, 2024
    risk 0.57cvss 8.8epss 0.00

    Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker to modify sensitive application components.