Ivanti CSA是美国Ivanti公司的一款通过 Internet 提供安全通信和功能的 Internet 设备。 Ivanti CSA 5.0.2之前版本存在安全漏洞,该漏洞源于存在SQL注入漏洞,允许具有管理员权限的远程经过身份验证的攻击者运行任意SQL语句。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Ivanti | CSA (Cloud Services Appliance) | 5.0.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/nothe1senberg/CVE-2024-9379 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-7612 | 8.8 HIGH | Ivanti Endpoint Manager Mobile 安全漏洞 |
| CVE-2024-9167 | 7.8 HIGH | Ivanti Velocity License Server 安全漏洞 |
| CVE-2024-47011 | 7.5 HIGH | Ivanti Avalanche 安全漏洞 |
| CVE-2024-47008 | 7.5 HIGH | Ivanti Avalanche 安全漏洞 |
| CVE-2024-47007 | 7.5 HIGH | Ivanti Avalanche 安全漏洞 |
| CVE-2024-47010 | 7.3 HIGH | Ivanti Avalanche 安全漏洞 |
| CVE-2024-47009 | 7.3 HIGH | Ivanti Avalanche 安全漏洞 |
| CVE-2024-9381 | 7.2 HIGH | Ivanti CSA 安全漏洞 |
| CVE-2024-9380 | 7.2 HIGH | Ivanti CSA 安全漏洞 |
No comments yet