Ivanti Connect Secure
cpe:2.3:a:ivanti:connect_secure:*:*:*:*:*:*:*
- < 22.7R2.6
A vulnerability exists in Ivanti Connect Secure versions prior to 22.7R2.6 and Ivanti Policy Secure versions prior to 22.7R1.3, allowing local authenticated attackers with admin privileges to access sensitive data. The issue arises from cleartext storage of information, which could be exploited to read confidential data.
Exploitation of this vulnerability could lead to unauthorized access to sensitive data, potentially allowing for further attacks or privilege escalation.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.