An XML entity expansion or XEE... CVE-2024-22023

- AV AC AU C I A
发布: 2024-04-04
修订: 2024-04-08

An XML entity expansion or XEE vulnerability in SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure allows an unauthenticated attacker to send specially crafted XML requests in-order-to temporarily cause resource exhaustion thereby resulting in a limited-time DoS.

0%
暂无可用Exp或PoC
当前有60条受影响产品信息