CVE-2024-37381 - CERT CVE
ID CVE-2024-37381
Sažetak An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2024 flat allows an authenticated attacker within the same network to execute arbitrary code.
Reference
CVSS
Base: 8.4
Impact: 6.0
Exploitability:1.7
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK LOW HIGH
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.0/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Zadnje važnije ažuriranje 01-08-2024 - 13:53
Objavljeno 29-07-2024 - 06:15