RULE(RULE ID:338528)

Rule General Information
Release Date: 2024-11-13
Rule Name: Ivanti Cloud Services Appliance Path Traversal Vulnerability (CVE-2024-8963)
Severity:
CVE ID:
Rule Protection Details
Description: Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted functionality.
Impact: An attacker can remotely access restricted features without authorization.
Affected OS: Windows, Linux, Others
Reference: https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-CSA-4-6-Cloud-Services-Appliance-CVE-2024-8963
Solutions
Refer to the announcement or patch by the vendor: https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-CSA-4-6-Cloud-Services-Appliance-CVE-2024-8963