Boletines de Vulnerabilidades

CVE-2025-13661

   
Software afectado IVANTI
 
Path traversal in Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a remote authenticated attacker to write arbitrary files outside of the intended directory. User interaction is required.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2025-13661