← Back to browse · API

CVE-2024-24992

Severity
HIGH
CVSS
8.8
EPSS
0.70908
Risk score
60.02
CISA KEV
No
PoC
No
Published
2024-04-19
Modified
2025-01-07
First seen
2026-08-07
Aliases
EUVD-2024-22354
Products
Ivanti:Avalanche 6.4.3 <6.4.3
Sources
euvd EUVD-2024-22354

Description

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM.

References