Insufficiently restrictive permissions in Ivanti Secure Access Client before 22.7R4 allows a local authenticated attacker to escalate their privileges.
Metrics
Affected Vendors & Products
References
History
Tue, 11 Mar 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 11 Mar 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Insufficiently restrictive permissions in Ivanti Secure Access Client before 22.7R4 allows a local authenticated attacker to escalate their privileges. | |
Weaknesses | CWE-732 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: ivanti
Published: 2025-03-11T14:11:30.497Z
Updated: 2025-03-12T04:00:43.923Z
Reserved: 2025-01-07T02:19:22.796Z
Link: CVE-2025-22454

Updated: 2025-03-11T14:44:45.445Z

Status : Received
Published: 2025-03-11T15:15:44.737
Modified: 2025-03-11T15:15:44.737
Link: CVE-2025-22454

No data.