module

Ivanti Sentry MICSLogService Auth Bypass resulting in RCE (CVE-2023-38035)

Disclosed
Aug 21, 2023

Description

This module exploits an authentication bypass in Ivanti Sentry which exposes API functionality which
allows for code execution in the context of the root user.
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.