logo

Ivanti 0-Day Vulnerability Exploited in Wild-Patch Now

ID: a0c605a0-3497-572c-9c99-ae586d671a36

STIX ID: report--a0c605a0-3497-572c-9c99-ae586d671a36

Feed Name: GBHackers

Threat Score
90/100

Date Published: 2025-01-09

Date Updated: 2026-04-22

Author: Divya

...
...

Ivanti released a critical security advisory for Connect Secure, Policy Secure, and ZTA Gateways detailing two vulnerabilities: CVE-2025-0282, a stack-based buffer overflow enabling unauthenticated remote code execution (CVSS 9.0) that has been exploited in the wild, and CVE-2025-0283, a local authenticated privilege escalation (CVSS 7.0). Affected versions should be upgraded to 22.7R2.5 immediately; patches are available and customers are advised to use the Integrity Checker Tool to detect compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.