Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jm8p-8v2h-26pm

Опубликовано: 08 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

Improper access control in the certificate management component of Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 allows a remote authenticated admin with read-only rights to modify settings that should be restricted.

Improper access control in the certificate management component of Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 allows a remote authenticated admin with read-only rights to modify settings that should be restricted.

EPSS

Процентиль: 30%
0.00113
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-602

Связанные уязвимости

CVSS3: 6.3
nvd
7 месяцев назад

Improper access control in the certificate management component of Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 allows a remote authenticated admin with read-only rights to modify settings that should be restricted.

EPSS

Процентиль: 30%
0.00113
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-602