vendor:
Avalanche
by:
Robel Campbell
9.8
CVSS
CRITICAL
Remote Code Execution
94
CWE
Product Name: Avalanche
Affected Version From: v6.4.0.0
Affected Version To: Unknown
Patch Exists: YES
Related CWE: CVE-2023-32560
CPE: a:ivanti:avalanche:6.4.0.0
Platforms Tested: Windows 11 21H2
2023
Ivanti Avalanche
This exploit allows remote code execution in Ivanti Avalanche version v6.4.0.0. By exploiting this vulnerability, an attacker can execute arbitrary code on the target system.
This exploit allows remote code execution in Ivanti Avalanche version v6.4.0.0. By exploiting this vulnerability, an attacker can execute arbitrary code on the target system.
Mitigation:
Apply the vendor-provided patch or upgrade to a patched version of the software.