Lucene search

K
cvelistHackeroneCVELIST:CVE-2022-35258
HistoryDec 05, 2022 - 12:00 a.m.

CVE-2022-35258

2022-12-0500:00:00
CWE-128
hackerone
www.cve.org
2
cve-2022-35258
unauthenticated attacker
denial-of-service
ivanti connect secure
ivanti policy secure
ivanti neurons
zero-trust access

EPSS

0.001

Percentile

40.3%

An unauthenticated attacker can cause a denial-of-service to the following products: Ivanti Connect Secure (ICS) in versions prior to 9.1R14.3, 9.1R15.2, 9.1R16.2, and 22.2R4, Ivanti Policy Secure (IPS) in versions prior to 9.1R17 and 22.3R1, and Ivanti Neurons for Zero-Trust Access in versions prior to 22.3R1.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Ivanti Connect Secure (ICS), Ivanti Policy Secure (IPS), and Ivanti Neurons for Zero Trust Access Gateway",
    "versions": [
      {
        "version": "ICS Prior to 9.1R14.3,9.1R15.2,9.1R16.2 and 22.2R4, IPS Prior to 9.1R17 and 22.3R1, Ivanti Neurons for Zero Trust Access Gateway Prior to 22.3R1",
        "status": "affected"
      }
    ]
  }
]

EPSS

0.001

Percentile

40.3%

Related for CVELIST:CVE-2022-35258