← Back to browse · API

CVE-2024-11639

Severity
CRITICAL
CVSS
10.0
EPSS
0.04902
Risk score
41.72
CISA KEV
No
PoC
No
Published
2024-12-10
Modified
2024-12-14
First seen
2026-08-07
Aliases
EUVD-2024-34149, GHSA-4HPG-VXH4-JM69
Products
Ivanti:Cloud Services Application patch: 5.0.3
Sources
euvd EUVD-2024-34149

Description

An authentication bypass in the admin web console of Ivanti CSA before 5.0.3 allows a remote unauthenticated attacker to gain administrative access

References