An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory.
References
Configurations
History
06 May 2025, 18:58
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:ivanti:avalanche:*:*:*:*:*:*:*:* | |
First Time |
Ivanti avalanche
Ivanti |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
References | () https://forums.ivanti.com/s/article/Avalanche-6-4-3-Security-Hardening-and-CVEs-addressed?language=en_US - Vendor Advisory |
19 Apr 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-04-19 02:15
Updated : 2025-05-06 18:58
NVD link : CVE-2024-23528
Mitre link : CVE-2024-23528
JSON object : View
Products Affected
ivanti
- avalanche
CWE
No CWE.