header-logo
Suggest Exploit
vendor:
Avalanche
by:
Robel Campbell
9.8
CVSS
CRITICAL
Remote Code Execution
94
CWE
Product Name: Avalanche
Affected Version From: v6.4.0.0
Affected Version To: Unknown
Patch Exists: YES
Related CWE: CVE-2023-32560
CPE: a:ivanti:avalanche:6.4.0.0
Metasploit:
Other Scripts:
Platforms Tested: Windows 11 21H2
2023

Ivanti Avalanche

This exploit allows remote code execution in Ivanti Avalanche version v6.4.0.0. By exploiting this vulnerability, an attacker can execute arbitrary code on the target system.

Mitigation:

Apply the vendor-provided patch or upgrade to a patched version of the software.
Source

Exploit-DB raw data: