An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an authenticated remote attacker to read sensitive information in memory.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-21028 | An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an authenticated remote attacker to read sensitive information in memory. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 06 May 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ivanti
Ivanti avalanche |
|
| CPEs | cpe:2.3:a:ivanti:avalanche:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ivanti
Ivanti avalanche |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-01T23:06:25.130Z
Reserved: 2024-01-18T01:04:07.197Z
Link: CVE-2024-23533
Updated: 2024-08-01T23:06:25.130Z
Status : Analyzed
Published: 2024-04-19T02:15:07.980
Modified: 2025-05-06T19:24:55.380
Link: CVE-2024-23533
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD