An Use-after-free vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: hackerone

Published: 2024-04-19T01:10:11.777Z

Updated: 2024-08-02T00:41:55.949Z

Reserved: 2024-02-29T01:04:06.640Z

Link: CVE-2024-27975

cve-icon Vulnrichment

Updated: 2024-04-24T14:06:35.034Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-19T02:15:10.007

Modified: 2024-11-21T09:05:32.720

Link: CVE-2024-27975

cve-icon Redhat

No data.