Description
An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2024 flat allows an authenticated attacker within the same network to execute arbitrary code.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-36623 | An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2024 flat allows an authenticated attacker within the same network to execute arbitrary code. |
References
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 10 Jul 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ivanti:endpoint_manager:2024:-:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-02T03:50:55.937Z
Reserved: 2024-06-07T01:04:06.871Z
Link: CVE-2024-37381
Updated: 2024-07-29T13:31:34.461Z
Status : Analyzed
Published: 2024-07-29T06:15:01.827
Modified: 2025-07-10T18:40:11.813
Link: CVE-2024-37381
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD