Show filters
423 Total Results
Displaying 261-270 of 423
Sort by:
Attacker Value
Unknown
CVE-2023-38544
Disclosure Date: November 15, 2023 (last updated November 23, 2023)
A logged in user can modify specific files that may lead to unauthorized changes in system-wide configuration settings. This vulnerability could be exploited to compromise the integrity and security of the network on the affected system.
0
Attacker Value
Unknown
CVE-2023-38543
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
A vulnerability exists on all versions of the Ivanti Secure Access Client below 22.6R1.1, which could allow a locally authenticated attacker to exploit a vulnerable configuration, potentially leading to a denial of service (DoS) condition on the user machine.
0
Attacker Value
Unknown
CVE-2023-38043
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
A vulnerability exists on all versions of the Ivanti Secure Access Client below 22.6R1.1, which could allow a locally authenticated attacker to exploit a vulnerable configuration, potentially leading to a denial of service (DoS) condition on the user machine and, in some cases, resulting in a full compromise of the system.
0
Attacker Value
Unknown
CVE-2023-35080
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
A vulnerability has been identified in the Ivanti Secure Access Windows client, which could allow a locally authenticated attacker to exploit a vulnerable configuration, potentially leading to various security risks, including the escalation of privileges, denial of service, or information disclosure.
0
Attacker Value
Unknown
CVE-2023-41726
Disclosure Date: November 03, 2023 (last updated February 25, 2025)
Ivanti Avalanche Incorrect Default Permissions allows Local Privilege Escalation Vulnerability
0
Attacker Value
Unknown
CVE-2023-41725
Disclosure Date: November 03, 2023 (last updated February 25, 2025)
Ivanti Avalanche EnterpriseServer Service Unrestricted File Upload Local Privilege Escalation Vulnerability
0
Attacker Value
Unknown
CVE-2022-44569
Disclosure Date: November 03, 2023 (last updated February 25, 2025)
A locally authenticated attacker with low privileges can bypass authentication due to insecure inter-process communication.
0
Attacker Value
Unknown
CVE-2022-43555
Disclosure Date: November 03, 2023 (last updated February 25, 2025)
Ivanti Avalanche Printer Device Service Missing Authentication Local Privilege Escalation Vulnerability
0
Attacker Value
Unknown
CVE-2022-43554
Disclosure Date: November 03, 2023 (last updated February 25, 2025)
Ivanti Avalanche Smart Device Service Missing Authentication Local Privilege Escalation Vulnerability
0
Attacker Value
Unknown
CVE-2023-38041
Disclosure Date: October 25, 2023 (last updated February 25, 2025)
A logged in user may elevate its permissions by abusing a Time-of-Check to Time-of-Use (TOCTOU) race condition. When a particular process flow is initiated, an attacker can exploit this condition to gain unauthorized elevated privileges on the affected system.
0