Ivanti ICS

3 known vulnerabilities in Ivanti ICS, 1 critical, 3 actively exploited, with patch priority, exploit likelihood and the news covering them.

Recently exploited

  • CVE-2024-21893 CVSS 8.2 high · actively exploited Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request Forgery (SSRF) Vulnerability
  • CVE-2024-21887 CVSS 9.1 critical · actively exploited Ivanti Connect Secure and Policy Secure Command Injection Vulnerability
  • CVE-2023-46805 CVSS 8.2 high · actively exploited Ivanti Connect Secure and Policy Secure Authentication Bypass Vulnerability

Latest vulnerabilities

  • CVE-2024-21893 CVSS 8.2 high · actively exploited Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request Forgery (SSRF) Vulnerability
  • CVE-2024-21887 CVSS 9.1 critical · actively exploited Ivanti Connect Secure and Policy Secure Command Injection Vulnerability
  • CVE-2023-46805 CVSS 8.2 high · actively exploited Ivanti Connect Secure and Policy Secure Authentication Bypass Vulnerability