vulnerability
Ivanti EPM: CVE-2024-8441: Uncontrolled Search Path Element
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:L/AC:L/Au:M/C:C/I:C/A:C) | Sep 10, 2024 | Sep 20, 2024 | Dec 31, 2024 |
Severity
6
CVSS
(AV:L/AC:L/Au:M/C:C/I:C/A:C)
Published
Sep 10, 2024
Added
Sep 20, 2024
Modified
Dec 31, 2024
Description
An uncontrolled search path in the agent of Ivanti EPM before 2022 SU6, or the 2024 September update allows a local authenticated attacker with admin privileges to escalate their privileges to SYSTEM.
Solutions
ivanti-epm-cve-2024-8441-epm-2022ivanti-epm-cve-2024-8441-epm-2024
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.