VDB
ANCHORE-2024-37397
ANCHORE-2024-37397
PUBLISHED
An External XML Entity (XXE) vulnerability in the provisioning web service of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenticated attacker to leak API secrets.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ivanti | EPM | 0, 0, 0 |
Timeline
- Sep 10, 2024 CVE Published