Junglewise Threat Intelligence

CVE-2025-22457: Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability

CVE-2025-22457 · Severity: critical · CVSS 9.8 · Exploited in the wild · Published 2025-04-04

Technologies: Ivanti Connect Secure, Ivanti Policy Secure, Ivanti Neurons. Vendors: Ivanti.

Executive brief

A stack-based buffer overflow vulnerability in Ivanti Connect Secure, Policy Secure, and ZTA Gateways allows a remote unauthenticated attacker to achieve remote code execution. The vulnerability is caused by an out-of-bounds write (CWE-787) and has been observed being exploited in the wild.

Affected products

  • Ivanti Connect Secure before 22.7R2.6
  • Ivanti Policy Secure before 22.7R1.4
  • Ivanti ZTA Gateways before 22.8R2.2

Timeline

  • 2025-04-04: disclosed
  • 2025-04-04: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
  • 2025-04-04: advisory: Ivanti April Security Advisory published
  • 2025-04-08: other: Initial NIST analysis completed
  • 2025-05-02: other: CISA KEV entry updated

Related threats