← Back to browse · API

CVE-2023-46220

Severity
CRITICAL
CVSS
9.8
EPSS
0.11337
Risk score
43.17
CISA KEV
No
PoC
No
Published
2023-12-19
Modified
2024-08-02
First seen
2026-08-08
Aliases
EUVD-2023-50462, GHSA-V4RX-VW37-JHMQ
Products
Ivanti:Avalanche patch: 6.4.1
Sources
euvd EUVD-2023-50462

Description

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.

References