A privilege escalation vulnerability in web component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows a user to elevate privileges to that of an administrator.
No PoCs from references.
- https://github.com/ARPSyndicate/cve-scores
- https://github.com/H4lo/awesome-IoT-security-article
- https://github.com/farukokutan/Threat-Intelligence-Research-Reports
- https://github.com/inguardians/ivanti-VPN-issues-2024-research
- https://github.com/jamesfed/0DayMitigations
- https://github.com/seajaysec/Ivanti-Connect-Around-Scan