Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-38654


Improper bounds checking in Ivanti Secure Access Client before version 22.7R3 allows a local authenticated attacker with admin privileges to cause a denial of service.


Published

2024-11-13T02:15:18.490

Last Modified

2025-06-27T18:45:18.467

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.0: 4.4 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ivanti secure_access_client < 22.7 Yes
Application ivanti secure_access_client 22.7 Yes
Application ivanti secure_access_client 22.7 Yes
Application ivanti secure_access_client 22.7 Yes
Application ivanti secure_access_client 22.7 Yes
Application ivanti secure_access_client 22.7 Yes

References