CVE-2024-7593: Ivanti Virtual Traffic Manager Authentication Bypass Vulnerability
Incorrect implementation of an authentication algorithm in Ivanti vTM other than versions 22.2R1 or 22.7R2 allows a remote unauthenticated attacker to bypass authentication of the admin panel.
Other sources
Ivanti Virtual Traffic Manager contains an authentication bypass vulnerability that allows a remote, unauthenticated attacker to create a chosen administrator account.
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Ivanti Virtual Traffic Managerto a version that resolves this vulnerability.Fixed in 22.2R1 - Upgrade
Upgrade
Ivanti Virtual Traffic Managerto a version that resolves this vulnerability.Fixed in 22.7R2 - Compensating control
Discontinue use of the product if mitigations are unavailable.
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7593?
CVE-2024-7593 is classified as a critical vulnerability due to its potential for authentication bypass by remote attackers.
How do I fix CVE-2024-7593?
To mitigate CVE-2024-7593, upgrade to Ivanti Virtual Traffic Manager versions 22.2R1 or 22.7R2 or later.
What impact does CVE-2024-7593 have on Ivanti Virtual Traffic Manager?
CVE-2024-7593 allows unauthenticated attackers to bypass the admin panel authentication, leading to potential control over the system.
Does CVE-2024-7593 affect all versions of Ivanti Virtual Traffic Manager?
CVE-2024-7593 affects Ivanti Virtual Traffic Manager versions prior to 22.2R1 and 22.7R2.
Is there a known exploit for CVE-2024-7593?
Yes, there are public exploits available that can be used to exploit CVE-2024-7593.