Executive brief
A stack-based buffer overflow vulnerability in Ivanti Connect Secure, Policy Secure, and ZTA Gateways allows a remote unauthenticated attacker to achieve remote code execution. The vulnerability is caused by an out-of-bounds write (CWE-787) and has been observed being exploited in the wild.
Affected products
- Ivanti Connect Secure before 22.7R2.6
- Ivanti Policy Secure before 22.7R1.4
- Ivanti ZTA Gateways before 22.8R2.2
Timeline
- 2025-04-04: disclosed
- 2025-04-04: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
- 2025-04-04: advisory: Ivanti April Security Advisory published
- 2025-04-08: other: Initial NIST analysis completed
- 2025-05-02: other: CISA KEV entry updated