Ivanti Vulnerabilities and Affected Products
Vulnerabilities associated with Connect Secure and Policy Secure.
Products
Clear product- Avalanche94 vulnerabilities
- Endpoint Manager71 vulnerabilities
- Connect Secure62 vulnerabilities
- Policy Secure52 vulnerabilities
- endpoint_manager45 vulnerabilities
- EPM33 vulnerabilities
- connect_secure24 vulnerabilities
- policy_secure20 vulnerabilities
- Endpoint Manager Mobile18 vulnerabilities
- Secure Access Client15 vulnerabilities
- ZTA Gateway15 vulnerabilities
- Connect Secure and Policy Secure14 vulnerabilities
- Neurons for Secure Access13 vulnerabilities
- EPMM11 vulnerabilities
- Workspace Control10 vulnerabilities
- automation8 vulnerabilities
- endpoint_manager_mobile8 vulnerabilities
- Endpoint Manager Mobile (EPMM)7 vulnerabilities
- Pulse Connect Secure7 vulnerabilities
- CSA (Cloud Services Appliance)6 vulnerabilities
- endpoint_manager_cloud_services_appliance6 vulnerabilities
- secure_access_client6 vulnerabilities
- Sentry6 vulnerabilities
- Cloud Services Application5 vulnerabilities
- Endpoint Manager (EPM)5 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-21894CRITICAL | Ivanti Connect Secure and Policy Secure Out-of-bounds WriteA heap overflow vulnerability in IPSec component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure allows an unauthenticated malicious user to send specially crafted requests in-order-to crash the service thereby causing a DoS attack. In certain conditions this may lead to execution of arbitrary code | CVSS9.8v3.1 | EPSS19% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-22024HIGH | Ivanti Connect Secure and Policy Secure Improper Restriction of XML External Entity ReferenceAn XML external entity or XXE vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x), Ivanti Policy Secure (9.x, 22.x) and ZTA gateways which allows an attacker to access certain restricted resources without authentication. | CVSS8.3v3.1 | EPSS94.7% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2024-21888HIGH | Ivanti Connect Secure Privilege EscalationA privilege escalation vulnerability in web component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows a user to elevate privileges to that of an administrator. CWE-269Jan 31, 2024 | CVSS8.8v3.1 | EPSS86.8% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-21887CRITICAL | Ivanti Connect Secure and Policy Secure Command Injection VulnerabilityA command injection vulnerability in web components of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows an authenticated administrator to send specially crafted requests and execute arbitrary commands on the appliance. | CVSS9.1v3.1 | EPSS>99.9% | PoCs14 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2023-46805HIGH | Ivanti Connect Secure and Policy Secure Authentication Bypass VulnerabilityAn authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access restricted resources by bypassing control checks. | CVSS8.2v3.1 | EPSS>99.9% | PoCs11 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2021-22900HIGH | Ivanti Pulse Connect Secure Unrestricted File Upload VulnerabilityA vulnerability allowed multiple unrestricted uploads in Pulse Connect Secure before 9.1R11.4 that could lead to an authenticated administrator to perform a file write via a maliciously crafted archive upload in the administrator web interface. | CVSS7.2v3.1 | EPSS14.1% | PoCs0 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-22899HIGH | Ivanti Pulse Connect Secure Command Injection VulnerabilityA command injection vulnerability exists in Pulse Connect Secure before 9.1R11.4 allows a remote authenticated attacker to perform remote code execution via Windows Resource Profiles Feature CWE-77May 27, 2021 | CVSS8.8v3.1 | EPSS22.9% | PoCs0 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-22894HIGH | Ivanti Pulse Connect Secure Collaboration Suite Buffer Overflow VulnerabilityA buffer overflow vulnerability exists in Pulse Connect Secure before 9.1R11.4 allows a remote authenticated attacker to execute arbitrary code as the root user via maliciously crafted meeting room. | CVSS8.8v3.1 | EPSS41.3% | PoCs0 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-22893CRITICAL | Ivanti Pulse Connect Secure Use-After-Free VulnerabilityPulse Connect Secure 9.0R3/9.1R1 and higher is vulnerable to an authentication bypass vulnerability exposed by the Windows File Share Browser and Pulse Secure Collaboration features of Pulse Connect Secure that can allow an unauthenticated user to perform remote arbitrary code execution on the Pulse Connect Secure gateway. This vulnerability has been exploited in the wild. | CVSS10.0v3.1 | EPSS47.2% | PoCs3 | SignalsListed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |
CVE-2020-8260HIGH | Ivanti Pulse Connect Secure Code Execution VulnerabilityA vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary code execution using uncontrolled gzip extraction. CWE-434Oct 28, 2020 | CVSS7.2v3.1 | EPSS96.5% | PoCs1 | SignalsListed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |
CVE-2020-8243HIGH | Ivanti Pulse Connect Secure Code Execution VulnerabilityA vulnerability in the Pulse Connect Secure < 9.1R8.2 admin web interface could allow an authenticated attacker to upload custom template to perform an arbitrary code execution. CWE-94Sep 29, 2020 | CVSS7.2v3.1 | EPSS90.8% | PoCs0 | SignalsListed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |
CVE-2019-11507MEDIUM | Ivanti Connect Secure and Policy Secure Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')In Pulse Secure Pulse Connect Secure (PCS) 8.3.x before 8.3R7.1 and 9.0.x before 9.0R3, an XSS issue has been found on the Application Launcher page. | CVSS6.1v3.1 | EPSS4.06% | PoCs0 | SignalsNot listed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2019-11510CRITICAL | Ivanti Pulse Connect Secure Arbitrary File Read VulnerabilityIn Pulse Secure Pulse Connect Secure (PCS) 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R3.4, an unauthenticated remote attacker can send a specially crafted URI to perform an arbitrary file reading vulnerability . | CVSS10.0v3.1 | EPSS>99.9% | PoCs16 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2019-11539HIGH | Ivanti Pulse Connect Secure and Policy Secure Command Injection VulnerabilityIn Pulse Secure Pulse Connect Secure version 9.0RX before 9.0R3.4, 8.3RX before 8.3R7.1, 8.2RX before 8.2R12.1, and 8.1RX before 8.1R15.1 and Pulse Policy Secure version 9.0RX before 9.0R3.2, 5.4RX before 5.4R7.1, 5.3RX before 5.3R12.1, 5.2RX before 5.2R12.1, and 5.1RX before 5.1R15.1, the admin web interface allows an authenticated attacker to inject and execute commands. CWE-78Apr 26, 2019 | CVSS7.2v3.1 | EPSS98.6% | PoCs4 | SignalsListed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |