RULE(RULE ID:337793)

Rule General Information
Release Date: 2024-01-18
Rule Name: Ivanti Policy Secure Command Injection Vulnerability (CVE-2023-46805 CVE-2024-21887)
Severity:
CVE ID:
Rule Protection Details
Description: Ivanti Policy Secure is an enterprise-grade remote access solution. The product mainly provides features such as secure remote access (VPN), multi-factor authentication, etc. CVE-2023-46805 and CVE-2024-21887 are authentication bypass and command injection vulnerabilities, respectively, exploit this chain to allow a remote unauthenticated attacker to execute arbitrary operating system commands with root privilege.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.