CVE-2024-39709

Publication date

2024-11-13 01:54:45

Family

hackerone

State

PUBLISHED

Description

Incorrect file permissions in Ivanti Connect Secure before version 22.6R2 (Not Applicable to 9.1Rx) and Ivanti Policy Secure before version 22.7R1 (Not Applicable to 9.1Rx) allow a local authenticated attacker to escalate their privileges.