A
n out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory.
References
Configurations
History
06 May 2025, 18:30
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| References | () https://forums.ivanti.com/s/article/Avalanche-6-4-3-Security-Hardening-and-CVEs-addressed?language=en_US - Vendor Advisory | |
| CPE | cpe:2.3:a:ivanti:avalanche:*:*:*:*:*:*:*:* | |
| First Time |
Ivanti
Ivanti avalanche |
21 Nov 2024, 08:57
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://forums.ivanti.com/s/article/Avalanche-6-4-3-Security-Hardening-and-CVEs-addressed?language=en_US - |
03 Jul 2024, 01:47
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-125 |
Information
Published : 2024-04-19 02:15
Updated : 2025-05-06 18:30
NVD link : CVE-2024-23526
Mitre link : CVE-2024-23526
CVE.ORG link : CVE-2024-23526
JSON object : View
CWE
CWE-125
Out-of-bounds Read