← Back to browse · API

CVE-2024-29204

Severity
CRITICAL
CVSS
9.8
EPSS
0.04308
Risk score
40.71
CISA KEV
No
PoC
No
Published
2024-04-19
Modified
2025-12-16
First seen
2026-08-07
Aliases
EUVD-2024-26221, GHSA-5XM4-9P77-7MJP
Products
Ivanti:Avalanche 6.4.3 <6.4.3
Sources
euvd EUVD-2024-26221

Description

A Heap Overflow vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows a remote unauthenticated attacker to execute arbitrary commands

References