CVE-2024-13162 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

SQL injection in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote authenticated attacker with a…
High CVSS: 7.2

CVE-2024-13162

SQL injection in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote authenticated attacker with admin privileges to achieve remote code execution. This CVE addresses incomplete fixes from CVE-2024-32848.
Vendor
Ivanti
Product
Endpoint Manager
CWE
CWE-89
Yayın Tarihi
2025-01-14 18:15:26
Güncelleme
2025-07-11 17:33:21
Source Identifier
3c1d8aa1-5a33-4ea4-8992-aadd6440af75
KEV Date Added
-

Kategoriler

Referanslar