CVE-2023-35080: High severity ivanti secure access client vulnerability
A vulnerability has been identified in the Ivanti Secure Access Windows client, which could allow a locally authenticated attacker to exploit a vulnerable configuration, potentially leading to various security risks, including the escalation of privileges, denial of service, or information disclosure.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-35080?
CVE-2023-35080 is a vulnerability in the Ivanti Secure Access Windows client that could allow a locally authenticated attacker to exploit a vulnerable configuration, potentially leading to various security risks.
How does CVE-2023-35080 affect Ivanti Secure Access Client?
CVE-2023-35080 affects Ivanti Secure Access Client version 22.6 and 22.6-r1.
What are the potential security risks of CVE-2023-35080?
The potential security risks of CVE-2023-35080 include the escalation of privileges, denial of service, or information disclosure.
How severe is CVE-2023-35080?
CVE-2023-35080 has a severity value of 8.8, which is considered high.
How can I fix CVE-2023-35080?
To fix CVE-2023-35080, update to the latest version of Ivanti Secure Access Client, which includes security fixes for this vulnerability. Refer to the official Ivanti website for more information on the latest release.