CVE-2024-29824

An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated attacker within the same network to execute arbitrary code.
Configurations

No configuration.

History

No history.

Information

Published : 2024-05-31 18:15

Updated : 2024-07-03 01:52


NVD link : CVE-2024-29824

Mitre link : CVE-2024-29824

CVE.ORG link : CVE-2024-29824


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')