Ivanti has released security updates to address vulnerabilities affecting Connect Secure (ICS), Policy Secure (IPS), and Cloud Services Application (CSA) . Hackers can exploit these vulnerabilities to execute arbitrary code .

CVE-2025-22467 (CVSS score: 9.9/10): This is a stack-based buffer overflow vulnerability in Ivanti Connect Secure and affects versions prior to 22.7R2.6. It allows an attacker to achieve remote code execution.
CVE-2024-38657 (CVSS score: 9.1/10): Affects Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy Secure before version 22.7R1.3 and allows an authorized attacker, with administrator privileges, to write arbitrary files.
CVE-2024-10644 (CVSS score: 9.1/10): A code injection vulnerability affecting Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy Secure before version 22.7R1.3. It allows an attacker with administrative privileges to achieve remote code execution.
CVE-2024-47908 (CVSS score: 9.1/10): A vulnerability in the Ivanti CSA admin web console affects versions before 5.0.5 and allows an attacker with administrative privileges to achieve remote code execution.
See also: Fortinet: Hackers exploit vulnerability in FortiOS and FortiProxy
Ivanti has fixed the vulnerabilities in the following releases:
- Ivanti Connect Secure 22.7R2.6
- Ivanti Policy Secure 22.7R1.3
- Ivanti CSA 5.0.5

The impact of the above Ivanti vulnerabilities is significant, as they provide attackers with the ability to completely compromise affected systems. In addition to applying updates, it is recommended to monitor network traffic for any unusual activity that may indicate exploitation attempts. As threats continue to evolve, timely addressing such vulnerabilities is crucial to maintaining security.
See also: Microsoft Patch Tuesday February 2025: Fixes 55 vulnerabilities
Organizations cannot simply rely on reactive measures to protect their systems. Proactive steps, such as regularly patching known vulnerabilities and implementing strong access, are essential to mitigate potential risks.
The Ivanti exploit and combination of vulnerabilities serves as a reminder that attackers are constantly looking for new ways to penetrate networks and compromise sensitive data. It also highlights the importance of staying vigilant and applying updates provided by software vendors.
Source: thehackernews.com
