logo

Chained Vulnerabilities Exploited in Ivanti Cloud Service Appliances

ID: cad326a0-c58d-5e77-ab2e-40f52fda6b2d

STIX ID: report--cad326a0-c58d-5e77-ab2e-40f52fda6b2d

Feed Name: Infosecurity Magazine (News)

Threat Score
78/100

Date Published: 2025-01-23

Date Updated: 2026-04-22

...
...

CISA and the FBI warn that threat actors actively exploited chained vulnerabilities in Ivanti Cloud Service Appliances (notably CVE-2024-8963 combined with RCE and SQLi flaws) to gain access, execute remote code, steal credentials and deploy webshells; organizations are urged to upgrade, patch, retire end-of-life 4.6 instances, enable MFA and hunt for IOCs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.