Ivanti 0-Day Vulnerability Exploited in Wild-Patch Now
ID: a0c605a0-3497-572c-9c99-ae586d671a36
STIX ID: report--a0c605a0-3497-572c-9c99-ae586d671a36
Feed Name: GBHackers
Ivanti released a critical security advisory for Connect Secure, Policy Secure, and ZTA Gateways detailing two vulnerabilities: CVE-2025-0282, a stack-based buffer overflow enabling unauthenticated remote code execution (CVSS 9.0) that has been exploited in the wild, and CVE-2025-0283, a local authenticated privilege escalation (CVSS 7.0). Affected versions should be upgraded to 22.7R2.5 immediately; patches are available and customers are advised to use the Integrity Checker Tool to detect compromise.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
