4.4
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Description
An incorrect permission assignment for critical resource of Ivanti Secure Access Client before 22.8R6 allows a local authenticated user to read or modify sensitive log data via write access to a shared memory section.
Basic Information
ID
CVE-2026-7431
Source
ivanti
Published
May 12, 2026 at 14:18
Modified
May 12, 2026 at 15:45
Affected Product
Vendor
ivanti
Product
Secure Access Client
Version
22.8R6