logo

Multiple Vulnerabilities in Ivanti Avalanche Could Allow for Authentication Bypass

ID: 1c93451c-3bad-5834-9857-2d06b1b40c8b

STIX ID: report--1c93451c-3bad-5834-9857-2d06b1b40c8b

Feed Name: CISecurity.org Advisories

Threat Score
70/100

Date Published: 2025-01-14

Date Updated: 2026-04-27

...
...

Multiple path traversal vulnerabilities were discovered in Ivanti Avalanche (versions before 6.4.7) — CVE-2024-13179 and CVE-2024-13181 enable remote unauthenticated authentication bypass, while CVE-2024-13180 allows sensitive information disclosure; exploitation could permit installation of programs or access/modification/deletion of data depending on user privileges.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.