60
CVE-2024-8540
—CVSS 3.1
5.5 medium
EPSS
<1%p17
Published
()
Modified
Description
Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker to modify sensitive application components.
- Vendors
- ivanti
- Products
- standalone sentry
- Weakness
- CWE-732
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N