CVE-2024-21893
- Reference to the description:
- Description:
- A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) and Ivanti Neurons for ZTA allows an attacker to access certain restricted resources without authentication.
- Last updated date:
- 08/14/2024
Reports
ACTIVELY EXPLOITED
- Type:
- exploitation
- Confidence:
- HIGH
- Date of publishing:
- 01/31/2024
- Reference url to background
- Type:
- exploitation
- Confidence:
- HIGH
- Date of publishing:
- 01/31/2024
- Reference url to background
https://www.cisa.gov/known-exploited-vulnerabilities-catalog
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 02/02/2024
- Reference url to background
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 02/03/2024
- Reference url to background
https://github.com/Chocapikk/CVE-2024-21893-to-CVE-2024-21887
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 02/09/2024