logo

CISA Adds Ivanti CSA Vulnerability (CVE-2024-8190) To KEV

ID: 4443b112-a332-5928-9cda-2398293e97f0

STIX ID: report--4443b112-a332-5928-9cda-2398293e97f0

Feed Name: Cyble Blog

Threat Score
75/100

Date Published: 2024-10-25

Date Updated: 2026-07-17

...
...

Ivanti Cloud Services Appliance (CSA) 4.6 is affected by CVE-2024-8190, an OS command injection (CVSS 7.2) that permits remote authenticated administrative command execution; CISA added it to the Known Exploited Vulnerabilities catalog, Cyble found ~1,200 internet-exposed instances, and Ivanti advises applying Patch 519 or upgrading to CSA 5.0.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.