PoC Exploit Emerges for Critical RCE Bug in Ivanti Endpoint Manager
ID: 7a80e53d-5024-5038-9b76-9cf9f4ac6bc6
STIX ID: report--7a80e53d-5024-5038-9b76-9cf9f4ac6bc6
Feed Name: Dark Reading
Threat Score
Researchers disclosed a critical SQL injection vulnerability (CVE-2024-29824) in Ivanti Endpoint Manager that enables unauthenticated remote code execution (CVSS 9.8); a public proof-of-concept was published and Ivanti released a patch on May 24, with recommendations to patch immediately and restrict Internet access to management interfaces.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
