An out-of-bounds read vulnerability in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to leak sensitive information in memory.
References
Link | Resource |
---|---|
https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Avalanche-Multiple-CVEs-Q4-2024-Release | Vendor Advisory |
Configurations
History
18 Dec 2024, 18:44
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
First Time |
Ivanti avalanche
Ivanti |
|
CPE | cpe:2.3:a:ivanti:avalanche:*:*:*:*:premise:*:*:* | |
CWE | CWE-125 | |
References | () https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Avalanche-Multiple-CVEs-Q4-2024-ReleaseĀ - Vendor Advisory |
12 Nov 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-12 16:15
Updated : 2024-12-18 18:44
NVD link : CVE-2024-50331
Mitre link : CVE-2024-50331
JSON object : View
Products Affected
ivanti
- avalanche
CWE
CWE-125
Out-of-bounds Read