logo

Exploit code released for critical Ivanti RCE flaw, patch now

ID: e998b25b-9f95-5d39-8ab1-449aeb407513

STIX ID: report--e998b25b-9f95-5d39-8ab1-449aeb407513

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-09-16

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

A proof-of-concept exploit for CVE-2024-29847, a critical RCE in Ivanti Endpoint Manager caused by insecure deserialization in AgentPortal.exe, was published with full exploitation details (including a technique to bypass deserialization filters); Ivanti has released patches and hotfixes and administrators are urged to apply updates immediately as the PoC may fuel attacks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.