CVE-2024-29846

An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an authenticated attacker within the same network to execute arbitrary code.
Configurations

No configuration.

History

No history.

Information

Published : 2024-05-31 18:15

Updated : 2024-07-03 01:52


NVD link : CVE-2024-29846

Mitre link : CVE-2024-29846

CVE.ORG link : CVE-2024-29846


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')