Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Ivanti — Vulnerabilities & Security Advisories 390

Browse all 390 CVE security advisories affecting Ivanti. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Ivanti provides enterprise IT service management and endpoint management solutions, primarily facilitating workflow automation and device control for large organizations. The company’s software portfolio has historically been a significant target for attackers, resulting in a substantial record of 358 Common Vulnerabilities and Exposures. These security flaws frequently involve critical classes such as remote code execution, cross-site scripting, and privilege escalation, often stemming from complex integrations within its service management platforms. A notable incident occurred in 2021 when the SambaCry vulnerability allowed unauthenticated remote code execution, compromising thousands of systems globally. This event underscored the risks associated with legacy codebases and insufficient patch management cycles. Consequently, Ivanti has faced intense scrutiny regarding its development practices and incident response capabilities, prompting industry-wide recommendations for immediate isolation and rigorous vulnerability scanning of affected endpoints to mitigate potential data breaches and operational disruptions.

CVE ID Title CVSS Severity Published
CVE-2025-5463 Ivanti Connect Secure 日志信息泄露漏洞 — Connect Secure CWE-532 5.5 Medium 2025-07-08
CVE-2025-5451 Ivanti Connect Secure 安全漏洞 — Connect Secure CWE-121 4.9 Medium 2025-07-08
CVE-2025-5450 Ivanti Connect Secure和Ivanti Policy Secure 安全漏洞 — Connect Secure CWE-602 6.3 Medium 2025-07-08
CVE-2025-7037 SQL injection in Ivanti Endpoint Manager — Endpoint Manager CWE-89 7.2 High 2025-07-08
CVE-2025-6996 Improper Encryption in Ivanti Endpoint Manager — Endpoint Manager CWE-257 8.4 High 2025-07-08
CVE-2025-6995 Improper Encryption in Ivanti Endpoint Manager — Endpoint Manager CWE-257 8.4 High 2025-07-08
CVE-2025-5353 Ivanti Workspace Control 安全漏洞 — Workspace Control CWE-321 8.8 High 2025-06-10
CVE-2025-22463 Ivanti Workspace Control 安全漏洞 — Workspace Control CWE-321 7.3 High 2025-06-10
CVE-2025-22455 Ivanti Workspace Control 安全漏洞 — Workspace Control CWE-321 8.8 High 2025-06-10
CVE-2025-4428 Remote Code Execution — Endpoint Manager Mobile CWE-94 7.2 High 2025-05-13
CVE-2025-4427 Authentication Bypass — Endpoint Manager Mobile CWE-288 5.3 Medium 2025-05-13
CVE-2025-22462 Ivanti Neurons for ITSM 安全漏洞 — Neurons for ITSM (on-prem) CWE-288 9.8 Critical 2025-05-13
CVE-2025-22460 Ivanti Cloud Services Application 安全漏洞 — CSA (Cloud Services Appliance) CWE-1392 7.8 High 2025-05-13
CVE-2025-43716 Ivanti LANDesk Management Gateway 安全漏洞 — LANDesk Management Suite CWE-180 5.8 Medium 2025-04-23
CVE-2025-22466 Ivanti Endpoint Manager 跨站脚本漏洞 — Endpoint Manager CWE-79 8.2 High 2025-04-08
CVE-2025-22465 Ivanti Endpoint Manager 跨站脚本漏洞 — Endpoint Manager CWE-79 6.1 Medium 2025-04-08
CVE-2025-22464 Ivanti Endpoint Manager 安全漏洞 — Endpoint Manager CWE-822 6.1 Medium 2025-04-08
CVE-2025-22461 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 7.2 High 2025-04-08
CVE-2025-22459 Ivanti Endpoint Manager 安全漏洞 — Endpoint Manager CWE-296 4.8 Medium 2025-04-08
CVE-2025-22458 Ivanti Endpoint Manager 代码问题漏洞 — Endpoint Manager CWE-427 7.8 High 2025-04-08
CVE-2025-22457 Ivanti Connect Secure 安全漏洞 — Connect Secure CWE-121 9.0 Critical 2025-04-03
CVE-2025-22454 Ivanti Secure Access Client 安全漏洞 — Secure Access Client CWE-732 7.8 High 2025-03-11
CVE-2024-38657 Ivanti Connect Secure和Ivanti Policy Secure 安全漏洞 — Connect Secure 4.9 - 2025-02-21
CVE-2024-13813 Ivanti Secure Access Client 安全漏洞 — Secure Access Client CWE-732 7.1 High 2025-02-11
CVE-2024-13843 Ivanti Connect Secure 安全漏洞 — Connect Secure CWE-312 6.0 Medium 2025-02-11
CVE-2024-13842 Ivanti Connect Secure 安全漏洞 — Connect Secure CWE-321 6.0 Medium 2025-02-11
CVE-2024-13830 Ivanti Connect Secure 跨站脚本漏洞 — Connect Secure CWE-79 6.1 Medium 2025-02-11
CVE-2024-12058 Ivanti Connect Secure和Ivanti Policy Secure 安全漏洞 — Connect Secure CWE-73 6.8 Medium 2025-02-11
CVE-2024-10644 Ivanti Connect Secure 代码注入漏洞 — Connect Secure CWE-94 9.1 Critical 2025-02-11
CVE-2025-22467 Ivanti Connect Secure 安全漏洞 — Connect Secure CWE-121 9.9 Critical 2025-02-11

This page lists every published CVE security advisory associated with Ivanti. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.