Exploit code released for critical Ivanti RCE flaw, patch now
ID: e998b25b-9f95-5d39-8ab1-449aeb407513
STIX ID: report--e998b25b-9f95-5d39-8ab1-449aeb407513
Feed Name: Bleeping Computer
Threat Score
A proof-of-concept exploit for CVE-2024-29847, a critical RCE in Ivanti Endpoint Manager caused by insecure deserialization in AgentPortal.exe, was published with full exploitation details (including a technique to bypass deserialization filters); Ivanti has released patches and hotfixes and administrators are urged to apply updates immediately as the PoC may fuel attacks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
