CVE-2025-22466 - CERT CVE
ID CVE-2025-22466
Sažetak Reflected XSS in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows a remote unauthenticated attacker to obtain admin privileges. User interaction is required.
Reference
CVSS
Base: 8.2
Impact: 4.7
Exploitability:2.8
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH LOW NONE
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N
Zadnje važnije ažuriranje 16-05-2025 - 14:00
Objavljeno 08-04-2025 - 15:15