Security Update – Ivanti Software Vulnerability

Security Update – Ivanti Software Vulnerability


Vulnerability Name
: Ivanti VPN Software Vulnerability
CVE #s: CVE-2023-46805 and CVE-2024-21887
Platform or Software Package(s) Affected: Ivanti Connect Secure and Ivanti Policy Secure gateway products
Criticality: Critical

Recommended Action: For any customers using the two above-noted VPN solutions from Ivanti, visit the vendor’s website immediately. Patches for this critical vulnerability are available depending on which firmware/software version you are running. (The patches were made available February 1,
2024.)

Overview of Concern and Overview of Remediation: Ivanti, a software company, has announced a major vulnerability with two of their remote VPN products, which should be addressed immediately. The Ivanti official website post that gives details on this remote vulnerability is linked below:
https://www.ivanti.com/blog/security-update-for-ivanti-connect-secure-and-ivanti-policy-secure-gateways

We urge all customers using any Ivanti product (not just their VPN solutions) to review Ivanti’s website and news relating to this vulnerability, as often vendors will later announce other affected products. If you are using Ivanti for patch management or any other related solution, please be vigilant in updating your products more often in the upcoming days/weeks.

Please contact Jeremy Burris at S.R. Snodgrass, P.C. with any questions (jburris@srsnodgrass.com).

Share:

Facebook
Twitter
Pinterest
LinkedIn
Get The Latest Updates

Subscribe To Our Newsletter

Name

Most Popular

Related Posts

Compliance Update 3rd Quarter – 2026

Agencies Jointly Remove Additional References to Reputation Risk On June 2, 2026, the Federal Deposit Insurance Corporation (FDIC), Federal Reserve Board (FRB), and Office of

The Hidden Perils of Ignoring SEC Custody Rule Compliance

Failing to comply with the SEC Custody Rule can expose investment advisers to regulatory action, financial penalties, and reputational damage. Learn what the rule requires, common compliance pitfalls, and practical steps firms can take to reduce risk.

CBLR Rule Change Update

Interagency Final Rule on Revisions to the Community Bank Leverage Ratio (CBLR) Framework On April 23, 2026, the federal banking agencies jointly adopted a final