Security Advisory

CVE-2024-29848

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-31 17:38:31
Last updated 2024-09-19 05:08:34
Assigner hackerone
State PUBLISHED

Description

An unrestricted file upload vulnerability in web component of Ivanti Avalanche before 6.4.x allows an authenticated, privileged user to execute arbitrary commands as SYSTEM.