CVE-2024-47010: Path Traversal
Published Oct 8, 2024
·Updated
Path Traversal in Ivanti Avalanche before version 6.4.5 allows a remote unauthenticated attacker to bypass authentication.
Affected Software
1 affected component
Ivanti Avalanche<6.4.5
Event History
Oct 8, 2024
CVE Published
via MITRE·04:29 PM
Data Sourced
via MITRE·04:29 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-47010?
CVE-2024-47010 is rated as critical due to its impact on the authentication bypass vulnerabilities.
2
How do I fix CVE-2024-47010?
To fix CVE-2024-47010, upgrade Ivanti Avalanche to version 6.4.5 or later.
3
Who is affected by CVE-2024-47010?
Any users running Ivanti Avalanche versions prior to 6.4.5 are affected by CVE-2024-47010.
4
What type of attack does CVE-2024-47010 facilitate?
CVE-2024-47010 facilitates a remote unauthenticated attack that can bypass authentication.
5
Can CVE-2024-47010 be exploited without authentication?
Yes, CVE-2024-47010 can be exploited by remote attackers without the need for authentication.