CVE-2023-46261: Critical severity ivanti avalanche vulnerability
An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-46261?
CVE-2023-46261 is considered a high severity vulnerability due to its potential for memory corruption leading to Denial of Service or code execution.
How does CVE-2023-46261 affect my system?
CVE-2023-46261 affects systems running Ivanti Avalanche versions prior to 6.4.2, allowing attackers to exploit the Mobile Device Server.
How do I fix CVE-2023-46261?
To fix CVE-2023-46261, update Ivanti Avalanche to version 6.4.2 or later.
What type of attack is associated with CVE-2023-46261?
CVE-2023-46261 is associated with remote code execution and Denial of Service attacks through specially crafted data packets.
Is my version of Ivanti Avalanche vulnerable to CVE-2023-46261?
If you are running Ivanti Avalanche versions before 6.4.2, your version is vulnerable to CVE-2023-46261.