Close Menu
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
What's Hot

Outfits, emotes, and jam tracks

Ed Kelsey says he’s “very excited”

Olivia Wilde customizes Saint Laurent at LA premiere of ‘The Invite’

Facebook X (Twitter) Instagram
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
Facebook X (Twitter) Instagram
FYMOUS News
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
FYMOUS News
Home » Ivanti Patches Are Important Faults in Connect Secure and Policy Secure – Updated Now
Celebrities

Ivanti Patches Are Important Faults in Connect Secure and Policy Secure – Updated Now

By February 12, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

February 12, 2025Ravi LakshmananNetwork Security/Vulnerabilities

Ivanti patches critical security flaws

Ivanti has released security updates to address multiple security flaws affecting Connect Secure (ICS), Policy Secure (IPS), and Cloud Service Applications (CSA).

The list of vulnerabilities is below:

CVE-2024-38657 (CVSS score: 9.1) – External control of filenames for IVANTI Connect Secure before version 22.7R2.4 and IVANTI policy is safe before version 22.7R1.3. CVE-2025-22467 (CVSS score: 9.9) – Using stack-based buffer overflow for IVANTI Connect Secure before version 22.7R2.6, remote authentication attackers will cause remote code execution CVE-2024-10644 (CVSS score: 9.1) can be realized. Code injection in Ivanti Connect protects secure before version 22.7R2.4 and IVANTI policies, and is protected before version 22.7R1.3. Injection in the Ivanti CSA administrator web console before version 5.0.5 allows remote authentication attackers with administrative rights to achieve remote code execution

Cybersecurity

The drawbacks are addressed in the following versions –

Ivanti Connect Secure 22.7R2.6 Ivanti Policy Secure 22.7R1.3 Ivanti CSA 5.0.5

The company said it is unaware of any of the defects being exploited in the wild. However, as Ivanti appliances are repeatedly weaponized by malicious actors, it is essential that users take steps to apply the latest patches.

Ivanti also said that its edge products are “targeted and exploited by sophisticated threat actor attacks,” and that its software has been improved, implementing principles of safe design, and for potential abuse by the enemy. He admitted that he was making an effort to raise the stick.

“These products aren’t the ultimate targets, but they are increasingly a route that focuses their efforts on spying on highly valued organizations,” Ivanti Cso Daniel Spicer said. said.

“We have further strengthened internal scanning, manual leveraging and testing capabilities, increased collaboration and information sharing with the security ecosystem, and further strengthened our responsible disclosure process, including becoming authorized for CVE numbers. .”

This development comes when Bishop Fox released the full technical details of the currently patched security flaws of Sonic Wall Sonicos (CVE-2024-53704). access.

As of February 7, 2025, nearly 4,500 SonicWall SSL VPN servers for the Internet remain unpublished for CVE-2024-53704.

Cybersecurity

In a similar move, Akamai announced the discovery of two vulnerabilities in Fortinet Fortios (CVE-2024-46666 and CVE-2024-46668). The defect was resolved by Fortinet on January 14, 2025.

Fortinet has revised the advisory for CVE-2024-55591, highlighting another flaw tracked as CVE-2025-24472 (CVSS score: 8.1), and via specially crafted CSF proxy requests This can lead to authentication bypassing the device.

The company evaluated Watchtowr Labs researcher Sonny MacDonald as having discovered and reported the defect. The vulnerability means that it has already been patched along with CVE-2024-55591. This means that if the latter fix has already been applied, no customer action is required.

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleRussia – Ukraine War: List of Major Events – Day 1,084 | News of the Russian-Ukraine War
Next Article Tabby plans to double its valuation to $3.3 billion with $160 million in funding as it plans to go beyond BNPL

Related Posts

Olivia Wilde customizes Saint Laurent at LA premiere of ‘The Invite’

June 25, 2026

Penelope Cruz wears Chanel on ice at Los Angeles premiere of ‘The Invite’

June 25, 2026

Zendaya gets $35 vintage Spider-Man T-shirt in Paris

June 25, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Outfits, emotes, and jam tracks

Ed Kelsey says he’s “very excited”

Olivia Wilde customizes Saint Laurent at LA premiere of ‘The Invite’

Penelope Cruz wears Chanel on ice at Los Angeles premiere of ‘The Invite’

Trending Posts

Outfits, emotes, and jam tracks

June 25, 2026

Ed Kelsey says he’s “very excited”

June 25, 2026

Olivia Wilde customizes Saint Laurent at LA premiere of ‘The Invite’

June 25, 2026

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to The FYMOUS, a modern digital media platform dedicated to celebrities, artists, influencers, brands, entertainment culture, and the growing TwinH ecosystem.

We bring audiences closer to the people, stories, trends, and collaborations shaping today’s culture. From exclusive celebrity news and music releases to influencer highlights, brand partnerships, and TwinH activations, The FYMOUS delivers engaging content designed for the next generation of digital audiences.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.