PT-2024-19174 · Ivanti · Ivanti Epm

Published

2024-05-29

·

Updated

2025-06-20

·

CVE-2024-22058

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ivanti EPM versions 2021.1 and older
Description A buffer overflow issue allows a low-privilege user on the local machine with the EPM Agent installed to execute arbitrary code with elevated permissions.
Recommendations For Ivanti EPM versions 2021.1 and older, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2024-22058

Affected Products

Ivanti Epm