Aller au contenu

Fiche vulnérabilité

CVE-2025-22458 : faille élevée ivanti endpoint manager (CVSS 7.8)

Description

DLL hijacking in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an authenticated attacker to escalate to System.

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
8 avr. 2025
Dernière mise à jour
17 juin 2026

Produits concernés

  • ivanti endpoint manager

Références

Rechercher une autre vulnérabilité dans la base CVE