WGSA-2024-00004#
Ivanti Connect Secure and Ivanti Policy Secure Gateway Vulnerabilities
Summary #
On January 10th, Ivanti disclosed an authentication bypass and a command injection vulnerability affecting their Connect Secure and Policy Secure Gateway appliances. These vulnerabilities could allow an unauthenticated attacker to potentially execute arbitrary commands on vulnerable devices.
No WatchGuard products are affected by this vulnerability.
CVE identifiers #
| CVE ID | Description | CVSS |
|---|---|---|
| CVE-2023-46805 | An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access restricted resources by bypassing control checks. | 8.2 |
| CVE-2024-21887 | A command injection vulnerability in web components of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows an authenticated administrator to send specially crafted requests and execute arbitrary commands on the appliance. | 9.1 |
| CVE-2024-21888 | A privilege escalation vulnerability in web component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows a user to elevate privileges to that of an administrator. | 8.8 |
| CVE-2024-21893 | A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) and Ivanti Neurons for ZTA allows an attacker to access certain restricted resources without authentication. | 8.2 |
Product status #
| Product | Affected | Not affected |
|---|
Solution #
No solution has been published for this advisory.