logo

Over 13,000 Ivanti gateways vulnerable to actively exploited bugs

ID: c66322cc-3ae7-5fdf-98a8-c4e581ecc97f

STIX ID: report--c66322cc-3ae7-5fdf-98a8-c4e581ecc97f

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2024-02-15

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Multiple high- and critical-severity vulnerabilities affecting Ivanti Connect Secure and Policy Secure appliances (CVE-2023-46805, CVE-2024-21887, CVE-2024-21893, CVE-2024-21888, CVE-2024-22024) have been disclosed and patched, but researchers report thousands of internet-exposed systems remain unpatched; evidence includes mass scanning activity, reports of exploitation by nation-state and other actors, and researcher counts showing large numbers of vulnerable endpoints.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.