Critical Vulnerabilities in Ivanti Connect Secure VPN Appliances
ID: f627fb79-b78b-5d71-86a1-578d75d4aa46
STIX ID: report--f627fb79-b78b-5d71-86a1-578d75d4aa46
Feed Name: Kudelski Security
On 2025-01-08 Ivanti disclosed two critical vulnerabilities (CVE-2025-0282 and CVE-2025-0283) affecting Ivanti Connect Secure, Policy Secure, and related gateways; CVE-2025-0282 is an unauthenticated stack-based buffer overflow exploited in the wild since December 2024 that enables remote code execution, deployment of Perl-based web shells, credential harvesting, log tampering, and persistence across upgrades — organizations are urged to upgrade to ICS 22.7R2.5 (ICT-V22725) or apply planned patches (available Jan 21, 2025), perform factory resets where appropriate, enable detailed access logging, and run integrity scans to detect compromise.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
