8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
An improper certificate validation vulnerability in Ivanti Secure Access Client before 22.8R6 allows a remote unauthenticated attacker to execute arbitrary code.
AI Analysis
Improper certificate validation vulnerability allowing remote code execution
Basic Information
ID
CVE-2026-8992
Source
ivanti
Published
May 22, 2026 at 14:24
Affected Product
Vendor
ivanti
Product
Secure Access Client
Version
22.8R6
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
Ivanti
Product
Secure Access Client
Version
Before 22.8R6