CVE-2022-36976: Ivanti Avalanche EnterpriseServer Service SQL Injection Authentication Bypass Vulnerability
This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche 6.3.2.3490. The specific flaw exists within the GroupDaoImpl class. A crafted request can trigger execution of SQL queries composed from a user-supplied string. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-15333.
Other sources
This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche. The specific flaw exists within the GroupDaoImpl class. A crafted request can trigger execution of SQL queries composed from a user-supplied string. An attacker can leverage this vulnerability to bypass authentication on the system.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-36976?
The severity of CVE-2022-36976 is critical with a severity value of 9.8.
How does the Ivanti Avalanche EnterpriseServer Service SQL Injection Authentication Bypass Vulnerability work?
This vulnerability allows remote attackers to bypass authentication by leveraging a SQL injection flaw in the GroupDaoImpl class of Ivanti Avalanche.
What software is affected by CVE-2022-36976?
The Ivanti Avalanche version 6.3.2.3490 and versions up to 6.3.4 are affected by CVE-2022-36976.
How can an attacker exploit CVE-2022-36976?
An attacker can exploit CVE-2022-36976 by sending a crafted request that triggers the execution of SQL queries with a user-supplied string.