CVE-2024-21893: New Ivanti Zero-Day Vulnerability Actively Exploited
ID: 28c197df-d89a-54c5-bd59-5b854ce12684
STIX ID: report--28c197df-d89a-54c5-bd59-5b854ce12684
Feed Name: Arctic Wolf
Threat Score
Arctic Wolf reports two high-severity Ivanti vulnerabilities (CVE-2024-21893: a SAML-component SSRF; CVE-2024-21888: a web-component privilege escalation) and recommends applying vendor patches or importing the provided mitigation XML and running integrity checks; no PoC or in-the-wild exploitation was observed at the time, but prior zero-day activity against Ivanti and suspected Chinese-nexus targeting increase the likelihood of future exploitation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
