Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Oct 15, 2024

High
CISA KEV

CVE-2024-7593

IvantiVirtual Traffic Manager

Ivanti Virtual Traffic Manager contains an authentication bypass vulnerability that allows a remote, unauthenticated attacker to create a chosen administrator account.

Required Action

https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Virtual-Traffic-Manager-vTM-CVE-2024-7593 ; https://nvd.nist.gov/vuln/detail/CVE-2024-7593

Vulnerability Overview

Severity
High
CISA KEV
Yes
Ransomware
Unknown
Published
Sep 24, 2024
KEV Added
Sep 24, 2024
Due Date
Oct 15, 2024
Related Articles
0

Vendor

Ivanti

Virtual Traffic Manager