You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2024-8963
About this tag
CVE-2024-8963 is a critical vulnerability affecting the Ivanti Cloud Services Appliance (CSA) version 4.6. It has been identified as both an admin bypass and a path traversal flaw, allowing unauthorized access to affected systems. The Cybersecurity and Infrastructure Security Agency (CISA) has added this vulnerability to its Known Exploited Vulnerabilities Catalog, emphasizing active threats to federal networks and beyond. Exploitation can be combined with CVE-2024-8190, increasing risk. Organizations using Ivanti CSA are urged to apply security updates promptly to mitigate potential compromise.
According to a recent notice from CISA, Ivanti has issued a vital security update addressing an admin bypass vulnerability tagged as CVE-2024-8963 that affects its Cloud Services Appliance (CSA) version 4.6. This vulnerability, if exploited, could allow a cyber threat actor to gain unauthorized...
The Cybersecurity and Infrastructure Security Agency (CISA) has recently bolstered its Known Exploited Vulnerabilities Catalog with a new entry: CVE-2024-8963, concerning a path traversal vulnerability within the Ivanti Cloud Services Appliance (CSA). This addition serves as a critical reminder...