Ivanti Avalanche Manager Buffer Overflow Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A buffer overflow vulnerability has been identified in Ivanti Avalanche Manager versions prior to 6.4.1. This vulnerability may allow an unauthenticated attacker to disrupt services or execute arbitrary code by sending a specially crafted message to the Avalanche Manager.

Impact

Exploitation of this vulnerability could lead to service disruption or arbitrary code execution on the affected system.

Remediation

Users are advised to upgrade to Ivanti Avalanche Manager version 6.4.1 or later to address this vulnerability.

Added: Jul 12, 2025, 4:23 AM
Updated: Jul 12, 2025, 4:23 AM

Vulnerability Rating

Custom Algorithm
spread
1.4
impact
10.0
exploitability
7.0
remediation
7.7
relevance
0.3
threat
0.1
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.