VDB

GCVE-VVD-NCSC-2024-369

GCVE-VVD-NCSC-2024-369
Advisory PublishedCVSS 9.8/10
Vulnetix · Advisory published September 11, 2024
Ivanti heeft kwetsbaarheden verholpen in Ivanti Endpoint Manager.

Weaknesses (CWE)

CWE-89Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')CWE-306Missing Authentication for Critical FunctionCWE-1390Weak AuthenticationCWE-427Uncontrolled Search Path ElementCWE-502Deserialization of Untrusted DataCWE-611Improper Restriction of XML External Entity Reference

Risk Scores

CVSS 3.1
9.8/10
Critical · CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersionsPlatforms
ivantiendpoint_manager

Aliases

Transitive aliases

EUVD-2024-26839CVE-2024-13160GHSA-98mp-xvw5-2fchBDU:2025-00402EUVD-2024-49005EUVD-2024-51395CVE-2024-13162VVD-CISA-2024-34779VVD-CISA-2024-8321VVD-CISA-2024-34785BDU:2024-07734VVD-CISA-2024-8322CVE-2024-13172EUVD-2024-51385GHSA-42p2-q66q-8hx8VVD-CISA-2024-37397CVE-2024-13169CVE-2024-13158VVD-CISA-2024-10811EUVD-2024-33593GHSA-vh7p-jh36-p55rBDU:2025-00406EUVD-2024-36633VVD-CISA-2024-8191BDU:2025-00408NCSC-2024-0369BDU:2024-07155VVD-CISA-2024-8441VVD-CISA-2024-32845VVD-CISA-2024-13167EUVD-2024-30631CNVD-2025-30742EUVD-2024-51388VVD-CISA-2024-13171EUVD-2024-49090VVD-CISA-2024-13162EUVD-2024-51393BDU:2024-07158VVD-CISA-2024-32840EUVD-2024-49178BDU:2024-07266EUVD-2024-35051VVD-CISA-2024-13168VVD-CISA-2024-13166CNVD-2024-38821GHSA-pcxj-w6pv-x9c5BDU:2024-07250VVD-NCSC-2025-17CVE-2024-13163GHSA-c5xq-93hx-p95rBDU:2025-00375EUVD-2024-51384GHSA-g7wm-3q7g-g3q2BDU:2024-07263EUVD-2024-30632EUVD-2024-51397VVD-CISA-2024-32843GHSA-f53w-fw63-qjpwGHSA-v7mj-q2hh-7r72VVD-CISA-2024-32842CVE-2024-13170EUVD-2024-51394BDU:2025-00401VVD-CISA-2024-13160BDU:2024-07251BDU:2025-00398GHSA-6358-wjwp-64w4VVD-CISA-2024-13163VVD-CISA-2024-13169BDU:2024-07274BDU:2024-07157VVD-CISA-2024-13172GHSA-5fwx-95cc-hcxvCVE-2024-13161EUVD-2024-35045BDU:2024-07273GHSA-wfg8-6fh4-8fp9CVE-2024-10811CVE-2024-13171GHSA-jv5c-8jgx-c489CVE-2024-13168CVE-2024-13159EUVD-2024-51392BDU:2025-00397VVD-CISA-2024-32846GHSA-6v62-48r8-7wh2VVD-CISA-2024-13170VVD-CISA-2024-13158GHSA-2j3p-vpp9-9f53VVD-CISA-2024-13164WID-SEC-W-2024-2109GSD-2024-29847EUVD-2024-51398GHSA-gwpx-4h2q-gxjqVVD-CISA-2024-13161EUVD-2024-35049GHSA-w8hf-8rpm-xjp2GHSA-rj4v-5f39-crv6EUVD-2024-49088CVE-2024-13164BDU:2025-00411BDU:2025-00409BDU:2025-00405GHSA-c45c-r247-q8hcCVE-2024-13166EUVD-2024-51396EUVD-2024-51390GHSA-x4fw-fhfj-vm7cBDU:2024-07154VVD-CISA-2024-8320EUVD-2024-30628EUVD-2024-51386EUVD-2024-51391BDU:2025-00396BDU:2024-06794BDU:2024-07249CVE-2024-13167BDU:2025-00404BDU:2024-07248GHSA-22q6-7m3g-6r77GHSA-qccp-2vxv-82w5GHSA-cfw8-99m9-5qfmGHSA-pvh3-rvqg-w4qcGHSA-6m9g-cw25-j9jcEUVD-2024-51389EUVD-2024-51387GHSA-qfx3-m2xp-3pcpEUVD-2024-30629GHSA-h926-5fmr-p532GHSA-gg3w-r79x-787fBDU:2025-00403BDU:2025-00399GHSA-r268-64hq-mv45GHSA-35pg-8ph2-rp9cGHSA-qm6j-jqgw-8fcgVVD-CISA-2024-34783EUVD-2024-49089VVD-CISA-2024-32848EUVD-2024-30634CVE-2024-13165VVD-CISA-2024-13165BDU:2024-07268EUVD-2024-30626GHSA-g5xq-ccc5-74p4VVD-CISA-2024-29847VVD-CISA-2024-13159BDU:2025-00410BDU:2024-07156VVD-ANCHORE-2024-37397BDU:2025-00407GHSA-rg56-4h6q-rfgq

References

advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›