Security
Loading…

CVE-2024-9380

UNKNOWNKnown Exploited
Description

Ivanti Cloud Services Appliance (CSA) contains an OS command injection vulnerability in the administrative console which can allow an authenticated attacker with application admin privileges to pass commands to the underlying OS.

Timeline
Published:October 9th, 2024 12:00 AM
Last modified:October 9th, 2024 12:00 AM
Added to KEV:October 9th, 2024
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

Ivanti

Products

Cloud Services Appliance (CSA)
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute