ZeroHour

CVE-2023-35084

CVSS 3.1
9.8 critical
EPSS
3%p86
Published
()
Modified
Description

Unsafe Deserialization of User Input could lead to Execution of Unauthorized Operations in Ivanti Endpoint Manager 2022 su3 and all previous versions, which could allow an attacker to execute commands remotely.

Vendors
ivanti
Products
endpoint manager
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.