CVE-2024-38648 - CERT CVE
ID CVE-2024-38648
Sažetak A hardcoded secret in Ivanti DSM before 2024.2 allows an authenticated attacker on an adjacent network to decrypt sensitive data including user credentials.
Reference
CVSS
Base: 9.0
Impact: 6.0
Exploitability:2.3
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Zadnje važnije ažuriranje 14-07-2025 - 17:15
Objavljeno 12-07-2025 - 04:15