logo

CVE-2024-21893: New Ivanti Zero-Day Vulnerability Actively Exploited

ID: 28c197df-d89a-54c5-bd59-5b854ce12684

STIX ID: report--28c197df-d89a-54c5-bd59-5b854ce12684

Feed Name: Arctic Wolf

Threat Score
65/100

Date Published: 2024-02-01

Date Updated: 2026-07-26

Author: Andres Ramos

...
...

Arctic Wolf reports two high-severity Ivanti vulnerabilities (CVE-2024-21893: a SAML-component SSRF; CVE-2024-21888: a web-component privilege escalation) and recommends applying vendor patches or importing the provided mitigation XML and running integrity checks; no PoC or in-the-wild exploitation was observed at the time, but prior zero-day activity against Ivanti and suspected Chinese-nexus targeting increase the likelihood of future exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.