PT-2023-26887 · Ivanti · Ivanti Connect Secure

CVE-2023-39340

·

Published

2023-12-16

·

Updated

2024-03-26

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Ivanti Connect Secure versions prior to 22.6R2
Description A vulnerability exists where an attacker can send a specific request, potentially leading to Denial of Service (DoS) of the appliance.
Recommendations For versions prior to 22.6R2, update to version 22.6R2 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2023-39340

Affected Products

Ivanti Connect Secure