CVE-2024-21894
critical · 9.8A heap overflow vulnerability in IPSec component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure allows an unauthenticated malicious user to send specially crafted requests in-order-to crash the service thereby causing a DoS attack. In certain conditions this may lead to execution of arbitrary code
9.8
CVSS
19.0%
EPSS (exploit prob.)
97th
EPSS percentile
2024-04-04
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-787CWE-703
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 9.1 |
| ivanti | connect_secure | 22.1 |
| ivanti | connect_secure | 22.2 |
| ivanti | connect_secure | 22.3 |
| ivanti | connect_secure | 22.4 |
| ivanti | connect_secure | 22.5 |
| ivanti | connect_secure | 22.6 |
| ivanti | policy_secure | 9.0 |
| ivanti | policy_secure | 9.0 |
| ivanti | policy_secure | 9.0 |
| ivanti | policy_secure | 9.0 |
| ivanti | policy_secure | 9.0 |
| ivanti | policy_secure | 9.0 |
| ivanti | policy_secure | 9.0 |
| ivanti | policy_secure | 9.1 |
| ivanti | policy_secure | 9.1 |
| ivanti | policy_secure | 9.1 |
| ivanti | policy_secure | 9.1 |
| ivanti | policy_secure | 9.1 |
Check a specific version with /api/v1/cve/match.
References
- https://forums.ivanti.com/s/article/SA-CVE-2024-21894-Heap-Overflow-CVE-2024-22052-Null-Pointer-Dereference-CVE-2024-22053-Heap-Overflow-and-CVE-2024-22023-XML-entity-expansion-or-XXE-for-Ivanti-Connect-Secure-and-Ivanti-Policy-Secure-Gateways?language=en_US
- https://forums.ivanti.com/s/article/SA-CVE-2024-21894-Heap-Overflow-CVE-2024-22052-Null-Pointer-Dereference-CVE-2024-22053-Heap-Overflow-and-CVE-2024-22023-XML-entity-expansion-or-XXE-for-Ivanti-Connect-Secure-and-Ivanti-Policy-Secure-Gateways?language=en_US
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2024-21894