Vulnerability Details
Basic Information
| Title | Security Advisory Ivanti Cloud Services Application (CSA) (CVE-2024-47908, CVE-2024-11771) |
|---|---|
| Type | ivanti |
| Published | 2025-11-02T15:00:07 |
| Last Seen | 2025-04-25T23:47:10 |
| CVSS Score | 9.1 (CRITICAL) |
CVSS v3 Details
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | HIGH |
| User Interaction | NONE |
| Scope | CHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
CVE Information
| CVE IDs | CVE-2024-11771, CVE-2024-47908 |
|---|---|
| CWE | |
| Bulletin Family | software |
Description
Summary Ivanti has released updates for Ivanti Cloud Services Application (CSA) which addresses critical and medium severity vulnerabilities. Successful exploitation of CVE-2024-47908 could allow a remote authenticated attacker to achieve remote code…
Impact Assessment
| Base Score | 9.1 |
|---|---|
| Severity | CRITICAL |