Day: February 4, 2024

  • Blog
  • Day: February 4, 2024

The Risks and Solutions of the Ivanti Connect Secure SSRF Vulnerability

a new vulnerability has emerged, posing a significant risk to organizations using Ivanti Connect Secure. The Server-Side Request Forgery (SSRF) vulnerability, identified as CVE-2024-21893, exposes a flaw in the SAML component of Ivanti Connect Secure, Ivanti Policy Secure, and Ivanti Neurons. This vulnerability allows attackers to access restricted resources without authentication, potentially leading to unauthorized