logo

A Vulnerability in Ivanti Products Could Allow for Remote Code Execution

ID: 4f4bc4f1-b8ac-5946-a20c-890f445c5636

STIX ID: report--4f4bc4f1-b8ac-5946-a20c-890f445c5636

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2025-04-03

Date Updated: 2026-04-27

...
...

A stack-based buffer overflow (CVE-2025-22457) was identified in Ivanti Connect Secure, Policy Secure, and ZTA Gateways in versions prior to 22.7R2.6, 22.7R1.4, and 22.8R2.2 respectively; successful exploitation by an unauthenticated attacker could yield remote code execution, allowing installation of programs and modification or deletion of data on affected systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.