First published: Tue Dec 10 2024(Updated: )
Insufficient permissions in Ivanti DSM before version 2024.3.5740 allows a local authenticated attacker to delete arbitrary files.
Credit: 3c1d8aa1-5a33-4ea4-8992-aadd6440af75
Affected Software | Affected Version | How to fix |
---|---|---|
Ivanti Desktop and Server Management | <2024.3.5740 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-7572 is classified as a high severity vulnerability due to the potential for authenticated attackers to delete arbitrary files.
To fix CVE-2024-7572, upgrade Ivanti DSM to version 2024.3.5740 or later.
CVE-2024-7572 can be exploited by a local authenticated attacker.
CVE-2024-7572 affects Ivanti DSM versions prior to 2024.3.5740.
Exploitation of CVE-2024-7572 allows attackers to delete arbitrary files on the system.