PT-2026-40039 · Ivanti · Secure Access Client

Published

2026-05-12

·

Updated

2026-05-15

·

CVE-2026-7432

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ivanti Secure Access Client versions prior to 22.8R6
Description A race condition allows a locally authenticated user to escalate privileges to SYSTEM. A race condition is a situation where the system's substantive behavior is dependent on the sequence or timing of other uncontrollable events.
Recommendations Update to version 22.8R6 or later.

Fix

Race Condition

Weakness Enumeration

Related Identifiers

CVE-2026-7432

Affected Products

Secure Access Client