보안뉴스 아카이브
긴급도 65/100 심각도 미평가 · 미평가 악용확률 98.7% CISA KEV · 2024-10-09

CVE-2024-9379

CISA 기관 조치 기한: 2024-10-30

Ivanti Cloud Services Appliance (CSA)

Ivanti Cloud Services Appliance (CSA) contains a SQL injection vulnerability in the admin web console in versions prior to 5.0.2, which can allow a remote attacker authenticated as administrator to run arbitrary SQL statements.
KEV 필수 조치: As Ivanti CSA 4.6.x has reached End-of-Life status, users are urged to remove CSA 4.6.x from service or upgrade to the 5.0.x line, or later, of supported solution.

NVD 상세 ↗   참고 링크 ↗

← 취약점 목록