VYPR

Vendor CVEs

Ivanti

All CVEs

525 total · sorted by risk
  • CVE-2024-10256HigDec 10, 2024
    risk 0.46cvss 7.1epss 0.00

    Insufficient permissions in Ivanti Patch SDK before version 9.7.703 allows a local authenticated attacker to delete arbitrary files.

  • CVE-2024-8539HigNov 12, 2024
    risk 0.46cvss 7.1epss 0.00

    Improper authorization in Ivanti Secure Access Client before version 22.7R3 allows a local authenticated attacker to modify sensitive configuration files.

  • CVE-2024-27984HigApr 19, 2024
    risk 0.46cvss 7.1epss 0.02

    A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to delete specific type of files and/or cause denial of service.

  • CVE-2023-38041HigOct 25, 2023
    risk 0.46cvss 7.0epss 0.01

    A logged in user may elevate its permissions by abusing a Time-of-Check to Time-of-Use (TOCTOU) race condition. When a particular process flow is initiated, an attacker can exploit this condition to gain unauthorized elevated privileges on the affected system.

  • CVE-2023-41474MedJan 25, 2024
    risk 0.45cvss 6.5epss 0.38

    Directory Traversal vulnerability in Ivanti Avalanche 6.3.4.153 allows a remote authenticated attacker to obtain sensitive information via the javax.faces.resource component.

  • CVE-2025-55139MedSep 9, 2025
    risk 0.44cvss 6.8epss 0.01

    SSRF in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure before 22.7R1.6, Ivanti ZTA Gateway before 2.8R2.3-723 and Ivanti Neurons for Secure Access before 22.8R1.4 (Fix deployed on 02-Aug-2025) allows a remote authenticated attacker with admin privileges to…

  • CVE-2023-39338MedJul 12, 2025
    risk 0.44cvss 6.8epss 0.01

    Enables an authenticated user (enrolled device) to access a service protected by Sentry even if they are not authorized according to the sentry policy to access that service. It does not enable the user to authenticate to or use the service, it just provides the tunnel access.

  • CVE-2024-12058MedFeb 11, 2025
    risk 0.44cvss 6.8epss 0.01

    External control of a file name in Ivanti Connect Secure before version 22.7R2.6 and Ivanti Policy Secure before version 22.7R1.3 allows a remote authenticated attacker with admin privileges to read arbitrary files.

  • CVE-2024-8441MedSep 10, 2024
    risk 0.44cvss 6.7epss 0.00

    An uncontrolled search path in the agent of Ivanti EPM before 2022 SU6, or the 2024 September update allows a local authenticated attacker with admin privileges to escalate their privileges to SYSTEM.

  • CVE-2024-22026MedMay 22, 2024
    risk 0.44cvss 6.7epss 0.01

    A local privilege escalation vulnerability in EPMM before 12.1.0.0 allows an authenticated local user to bypass shell restriction and execute arbitrary commands on the appliance.

  • CVE-2023-46807MedMay 22, 2024
    risk 0.44cvss 6.7epss 0.01

    An SQL Injection vulnerability in web component of EPMM before 12.1.0.0 allows an authenticated user with appropriate privilege to access or modify data in the underlying database.

  • CVE-2023-46806MedMay 22, 2024
    risk 0.44cvss 6.7epss 0.01

    An SQL Injection vulnerability in a web component of EPMM versions before 12.1.0.0 allows an authenticated user with appropriate privilege to access or modify data in the underlying database.

  • CVE-2023-28126MedMay 9, 2023
    risk 0.44cvss 5.9epss 0.67

    An authentication bypass vulnerability exists in Avalanche versions 6.3.x and below that could allow an attacker to gain access by exploiting the SetUser method or can exploit the Race Condition in the authentication message.

  • CVE-2022-30121MedSep 23, 2022
    risk 0.44cvss 6.7epss 0.00

    The “LANDesk(R) Management Agent” service exposes a socket and once connected, it is possible to launch commands only for signed executables. This is a security bug that allows a limited user to get escalated admin privileges on their system.

  • CVE-2020-8222MedJul 30, 2020
    risk 0.44cvss 6.8epss 0.02

    A path traversal vulnerability exists in Pulse Connect Secure <9.1R8 that allowed an authenticated attacker via the administrator web interface to perform an arbitrary file reading vulnerability through Meeting.

  • CVE-2025-0293MedJul 8, 2025
    risk 0.43cvss 6.6epss 0.00

    CLRF injection in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 allows a remote authenticated attacker with admin rights to write to a protected configuration file on disk.

  • CVE-2021-3540MedJul 22, 2021
    risk 0.43cvss 6.5epss 0.03

    By abusing the 'install rpm info detail' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.

  • CVE-2021-3198MedJul 22, 2021
    risk 0.43cvss 6.5epss 0.03

    By abusing the 'install rpm url' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.

  • CVE-2026-8109MedMay 12, 2026
    risk 0.42cvss 6.5epss 0.01

    An exposed dangerous method on the Core Server of Ivanti Endpoint Manager before version 2024 SU6 allows a remote authenticated attacker to leak access credentials.

  • CVE-2026-1602MedFeb 10, 2026
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62392MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62391MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62390MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.02

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62389MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.02

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62388MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62387MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.02

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62386MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62385MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62384MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-62383MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-11623MedOct 13, 2025
    risk 0.42cvss 6.5epss 0.01

    SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the database.

  • CVE-2025-8310MedAug 12, 2025
    risk 0.42cvss 6.5epss 0.01

    Missing authorization in the admin console of Ivanti Virtual Application Delivery Controller before version 22.9 allows a remote authenticated attacker to take over admin accounts by resetting the password

  • CVE-2025-5464MedJul 8, 2025
    risk 0.42cvss 6.5epss 0.00

    Insertion of sensitive information into a log file in Ivanti Connect Secure before version 22.7R2.8 allows a local authenticated attacker to obtain that information.

  • CVE-2024-34788MedAug 7, 2024
    risk 0.42cvss 6.5epss 0.01

    An improper authentication vulnerability in web component of EPMM prior to 12.1.0.1 allows a remote malicious user to access potentially sensitive information

  • CVE-2024-27978MedApr 19, 2024
    risk 0.42cvss 6.5epss 0.02

    A Null Pointer Dereference vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks.

  • CVE-2024-24991MedApr 19, 2024
    risk 0.42cvss 6.5epss 0.02

    A Null Pointer Dereference vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks.

  • CVE-2024-23533MedApr 19, 2024
    risk 0.42cvss 6.5epss 0.01

    An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an authenticated remote attacker to read sensitive information in memory.

  • CVE-2023-35083MedOct 18, 2023
    risk 0.42cvss 6.5epss 0.01

    Allows an authenticated attacker with network access to read arbitrary files on Endpoint Manager recently discovered on 2022 SU3 and all previous versions potentially leading to the leakage of sensitive information.

  • CVE-2023-38344MedSep 21, 2023
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in Ivanti Endpoint Manager before 2022 SU4. A file disclosure vulnerability exists in the GetFileContents SOAP action exposed via /landesk/managementsuite/core/core.secure/OsdScript.asmx. The application does not sufficiently restrict user-supplied paths,…

  • CVE-2021-22933MedAug 16, 2021
    risk 0.42cvss 6.5epss 0.01

    A vulnerability in Pulse Connect Secure before 9.1R12 could allow an authenticated administrator to perform an arbitrary file delete via a maliciously crafted web request.

  • CVE-2020-8220MedJul 30, 2020
    risk 0.42cvss 6.5epss 0.02

    A denial of service vulnerability exists in Pulse Connect Secure <9.1R8 that allows an authenticated attacker to perform command injection via the administrator web which can cause DOS.

  • CVE-2018-8902MedJun 29, 2018
    risk 0.42cvss 6.5epss 0.02

    An issue was discovered in Ivanti Avalanche for all versions between 5.3 and 6.2. The impacted products used a single shared key encryption model to encrypt data. A user with access to system databases can use the discovered key to access potentially confidential stored data,…

  • CVE-2025-5450MedJul 8, 2025
    risk 0.41cvss 6.3epss 0.00

    Improper access control in the certificate management component of Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 allows a remote authenticated admin with read-only rights to modify settings that should be restricted.

  • CVE-2019-12375MedJun 3, 2019
    risk 0.41cvss 6.3epss 0.01

    Open directories in Ivanti LANDESK Management Suite (LDMS, aka Endpoint Manager) 10.0.1.168 Service Update 5 may lead to remote information disclosure and arbitrary code execution.

  • CVE-2025-55143MedSep 9, 2025
    risk 0.40cvss 6.1epss 0.01

    Reflected text injection in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure before 22.7R1.6, Ivanti ZTA Gateway before 2.8R2.3-723 and Ivanti Neurons for Secure Access before 22.8R1.4 (Fix deployed on 02-Aug-2025) allows a remote unauthenticated attacker to…

  • CVE-2025-22465MedApr 8, 2025
    risk 0.40cvss 6.1epss 0.01

    Reflected XSS in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows a remote unauthenticated attacker to execute arbitrary javascript in a victim's browser. Unlikely user interaction is required.

  • CVE-2025-22464MedApr 8, 2025
    risk 0.40cvss 6.1epss 0.00

    An untrusted pointer dereference vulnerability in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an attacker with local access to write arbitrary data into memory causing a denial-of-service condition.

  • CVE-2024-13830MedFeb 11, 2025
    risk 0.40cvss 6.1epss 0.01

    Reflected XSS in Ivanti Connect Secure before version 22.7R2.6 and Ivanti Policy Secure before version 22.7R1.3 allows a remote unauthenticated attacker to obtain admin privileges. User interaction is required.

  • CVE-2024-11004MedNov 12, 2024
    risk 0.40cvss 6.1epss 0.01

    Reflected XSS in Ivanti Connect Secure before version 22.7R2.1 and Ivanti Policy Secure before version 22.7R1.1 allows a remote unauthenticated attacker to obtain admin privileges. User interaction is required.

  • CVE-2021-38560MedFeb 1, 2022
    risk 0.40cvss 6.1epss 0.03

    Ivanti Service Manager 2021.1 allows reflected XSS via the appName parameter associated with ConfigDB calls, such as in RelocateAttachments.aspx.