vulnerability

Ivanti Virtual Traffic Manager: CVE-2024-7593: Improper Authentication

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Aug 12, 2024
Added
Oct 3, 2025
Modified
Oct 3, 2025

Description

Incorrect implementation of an authentication algorithm in Ivanti vTM other than versions 22.2R1 or 22.7R2 allows a remote unauthenticated attacker to bypass authentication of the admin panel.

Solution

ivanti-virtual-traffic-manager-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.