Ivanti released security updates for eight vulnerabilities across Cloud Services Application (CSA), Connect Secure (ICS), Policy Secure (IPS), Desktop and Server Management (DSM), Sentry, and Patch SDK, including five rated critical. The most severe issues affect CSA, ICS, and IPS and could allow SQL injection, remote code execution, authentication bypass, and ultimately full system compromise, while a separate advisory also addressed CVE-2024-7572 in DSM.
Additional flaws can lead to denial of service, unauthorized system changes, file deletion, and bypass of security mechanisms. Ivanti said Patch SDK exposure also affects dependent products including Endpoint Manager, Security Controls, Patch for Configuration Manager, Neurons for Patch Management, and Neurons Agent Platform, and urged customers to upgrade immediately to supported fixed versions for ICS, IPS, DSM, and other impacted platforms.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
Ivanti released security updates addressing eight vulnerabilities across CSA, DSM, ICS, IPS, Sentry, and Patch SDK, including five rated critical. CSIRT.SK reported that the most severe flaws could enable SQL injection, remote code execution, authentication bypass, full system compromise, denial of service, unauthorized changes, file deletion, and security mechanism bypass, and urged immediate upgrades to fixed versions.
Ivanti published a December 2024 security advisory for Ivanti Connect Secure and Ivanti Policy Secure covering multiple vulnerabilities. The advisory disclosed the affected products and fixes for the issues.
Ivanti published a security advisory for Ivanti Desktop and Server Management covering CVE-2024-7572. The advisory disclosed the vulnerability and associated remediation guidance.
3 references tracked. Mallory keeps watching after this page renders.
csirt.sk
Open sourceforums.ivanti.com
Open sourceforums.ivanti.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.