Security Advisory

CVE-2024-27975

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-19 01:10:11
Last updated 2025-12-16 18:13:22
Assigner hackerone
State PUBLISHED

Description

An Use-after-free vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM.