← Back to browse · API

CVE-2024-50330

Severity
CRITICAL
CVSS
9.8
EPSS
0.40512
Risk score
53.38
CISA KEV
No
PoC
No
Published
2024-11-12
Modified
2024-11-19
First seen
2026-08-07
Aliases
EUVD-2024-44825, GHSA-W7CF-G3RH-Q9HC
Products
Ivanti:Endpoint Manager patch: 2022 SU6 November Security Update, Ivanti:Endpoint Manager patch: 2024 November Security Update
Sources
euvd EUVD-2024-44825

Description

SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Update allows a remote unauthenticated attacker to achieve remote code execution.

References