ZeroHour

CVE-2024-10256

CVSS 3.1
7.1 high
EPSS
<1%p11
Published
()
Modified
Description

Insufficient permissions in Ivanti Patch SDK before version 9.7.703 allows a local authenticated attacker to delete arbitrary files.

Vendors
ivanti
Products
endpoint manager, neurons agent platform, neurons for patch management, patch for configuration manager, patch software development kit, security controls
Weakness
CWE-732
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.