CVE-2025-5468 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper handling of symbolic links in Ivanti Connect Secure before version 22.7R2.8 or 22.8R2, Ivanti Policy Secure before 22.7R1.5, Ivanti ZTA Gateway before…
Medium CVSS: 5.5

CVE-2025-5468

Improper handling of symbolic links in Ivanti Connect Secure before version 22.7R2.8 or 22.8R2, Ivanti Policy Secure before 22.7R1.5, Ivanti ZTA Gateway before 22.8R2.3-723 and Ivanti Neurons for Secure Access before 22.8R1.4 (Fix deployed on 02-Aug-2025) allows a local authenticated attacker to read arbitrary files on disk.
Vendor
Ivanti
Product
Connect Secure
CWE
CWE-61
Yayın Tarihi
2025-08-12 15:15:31
Güncelleme
2025-09-23 18:17:23
Source Identifier
3c1d8aa1-5a33-4ea4-8992-aadd6440af75
KEV Date Added
-

Kategoriler

Referanslar