← Back to browse · API

CVE-2023-38036

Severity
CRITICAL
CVSS
9.8
EPSS
0.01818
Risk score
39.84
CISA KEV
No
PoC
No
Published
2025-07-12
Modified
2026-02-26
First seen
2026-08-07
Aliases
EUVD-2023-41863, GHSA-RMCG-3298-C99G
Products
Ivanti:Avalanche 6.4.0 <6.4.1
Sources
euvd EUVD-2023-41863

Description

A security vulnerability within Ivanti Avalanche Manager before version 6.4.1 may allow an unauthenticated attacker to create a buffer overflow that could result in service disruption or arbitrary code execution.

References