Home
MEDIUM: 6.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:HDefault status
affected
2024 SU1 (custom)
unaffected
2022 SU7 (custom)
unaffected
Description
An untrusted pointer dereference vulnerability in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an attacker with local access to write arbitrary data into memory causing a denial-of-service condition.
Problem types
CWE-822: Untrusted Pointer Dereference
Product status
2024 SU1 (custom)
2022 SU7 (custom)
References
forums.ivanti.com/...pril-2025-for-EPM-2024-and-EPM-2022-SU6