A vulnerability exists on all versions of Ivanti Connect Secure below 22.6R2 where an attacker impersonating an administrator may craft a specific web request which may lead to remote code execution.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ivanti connect secure 22.1 |
||
ivanti connect secure 22.2 |
||
ivanti connect secure 21.9 |
||
ivanti connect secure 21.12 |
||
ivanti connect secure 22.3 |
||
ivanti connect secure 22.4 |
||
ivanti connect secure 22.5 |
||
ivanti connect secure 22.6 |
||
ivanti connect secure 9.1 |