From 20f41edf44163bda6e8b565d48b23fe02185de3e Mon Sep 17 00:00:00 2001 From: Alwin Warringa Date: Tue, 12 Nov 2024 09:06:19 +0100 Subject: [PATCH] Update _cases/2024/DIVD-2024-00046.md Aanpassing van frank doorgevoerd Co-authored-by: Frank Breedijk --- _cases/2024/DIVD-2024-00046.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/_cases/2024/DIVD-2024-00046.md b/_cases/2024/DIVD-2024-00046.md index 6a0af705..6f00780c 100644 --- a/_cases/2024/DIVD-2024-00046.md +++ b/_cases/2024/DIVD-2024-00046.md @@ -35,7 +35,7 @@ timeline: --- ## Summary -Ivanti is disclosing a critical vulnerability in Ivanti CSA 4.6 which was incidentally addressed in the patch released on 10 September (CSA 4.6 Patch 519). Successful exploitation could allow a remote unauthenticated attacker to access restricted functionality. If {% cve CVE-2024-8963 %} is used in conjunction with {% cve CVE-2024-8190 %} an attacker can bypass admin authentication and execute arbitrary commands on the appliance. +Ivanti has disclosed a critical vulnerability in Ivanti CSA 4.6 which was incidentally addressed in the patch released on 10 September (CSA 4.6 Patch 519). Successful exploitation could allow a remote unauthenticated attacker to access restricted functionality. If {% cve CVE-2024-8963 %} is used in conjunction with {% cve CVE-2024-8190 %} an attacker can bypass admin authentication and execute arbitrary commands on the appliance. ## Recommendations