Ivanti Secure Access Client Insufficient Permissions Vulnerability Allowing Arbitrary File Deletion

Vulnerability

A vulnerability exists in Ivanti Secure Access Client versions prior to 22.8R1, where insufficient permissions allow local authenticated attackers to delete arbitrary files. This issue could lead to unauthorized file removal, potentially disrupting user activities or causing data loss.

Impact

Exploitation of this vulnerability could result in the unauthorized deletion of files, which may disrupt user activities or lead to data loss.

Remediation

Users can upgrade to Ivanti Secure Access Client version 22.8R1 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.