⚡ Get unlimited AI threat intel — exploit-db.ai →
CRITICAL

CVE-2024-21887

⚡ Llama-3 AI Analysis

Executive Briefing

Ivanti Connect Secure command injection — chained with CVE-2023-46805 SSRF for unauthenticated exploitation by Chinese APT groups. Apply patches and run Ivanti ICT integrity checks. Mass exploitation observed globally.

NVD Description

A command injection vulnerability in web components of Ivanti Connect Secure and Ivanti Policy Secure allows an authenticated administrator to send specially crafted requests and execute arbitrary commands.

Want alerts for CVEs like this?

Exploit-DB.ai delivers real-time AI-triaged zero-day alerts directly to your inbox.

Activate Supernova →

Official Sources