Article Details

Scrape Timestamp (UTC): 2024-12-11 03:04:04.949

Source: https://thehackernews.com/2024/12/ivanti-issues-critical-security-updates.html

Original Article Text

Click to Toggle View

Ivanti Issues Critical Security Updates for CSA and Connect Secure Vulnerabilities. Ivanti has released security updates to address multiple critical flaws in its Cloud Services Application (CSA) and Connect Secure products that could lead to privilege escalation and code execution. The list of vulnerabilities is as follows - The shortcomings have been addressed in the below versions - While Ivanti has emphasized that it's not aware of active exploitation of any of the aforementioned flaws, it's imperative that users take quick action given that several flaws in its products have been abused by state-sponsored attackers for malicious activities.

Daily Brief Summary

CYBERCRIME // Ivanti Releases Updates for Critical Security Vulnerabilities

Ivanti has issued security updates for its Cloud Services Application (CSA) and Connect Secure products.

The updates address multiple critical vulnerabilities that could permit privilege escalation and remote code execution.

Although there are no reports of these vulnerabilities being actively exploited, the urgency to update remains high.

Past incidents have shown that Ivanti products have been targeted by state-sponsored attackers.

Users are strongly encouraged to install the latest updates promptly to mitigate potential security risks.