logo

PoC Exploit Emerges for Critical RCE Bug in Ivanti Endpoint Manager

ID: 7a80e53d-5024-5038-9b76-9cf9f4ac6bc6

STIX ID: report--7a80e53d-5024-5038-9b76-9cf9f4ac6bc6

Feed Name: Dark Reading

Threat Score
75/100

Date Published: 2024-06-13

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

Researchers disclosed a critical SQL injection vulnerability (CVE-2024-29824) in Ivanti Endpoint Manager that enables unauthenticated remote code execution (CVSS 9.8); a public proof-of-concept was published and Ivanti released a patch on May 24, with recommendations to patch immediately and restrict Internet access to management interfaces.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.