Path Traversal Vulnerability in Ivanti Endpoint Manager
CVE-2024-50324
What is CVE-2024-50324?
A path traversal vulnerability exists in Ivanti Endpoint Manager that permits a remote authenticated attacker with administrative privileges to gain unauthorized access and execute arbitrary code. This flaw impacts versions of the product released prior to the November 2024 Security Update, as well as versions before the November 2022 SU6. Attackers can exploit this vulnerability to bypass security settings, potentially leading to severe ramifications for system integrity and data protection. Timely updates and security patches are crucial to mitigating this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Endpoint Manager 2024 November Security Update
Endpoint Manager 2024 November Security Update
Endpoint Manager 2022 SU6 November Security Update
References
EPSS Score
84% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published