CyberSec.Space Logo
返回 CVE 浏览器

CVE-2025-22457

🔥 Known Exploited (CISA KEV)CRITICAL
9.0
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2025-04-03
Last Modified2026-06-17
Data SourcesNVDCISA KEV

Vulnerability Description

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways before version 22.8R2.2 allows a remote unauthenticated attacker to achieve remote code execution.

Affected Platforms (CPE)

📦
Ivanti

Connect Secure

< 22.7= 22.7
📦
Ivanti

Policy Secure

< 22.7= 22.7
📦
Ivanti

Zero Trust Access Gateway

< 22.8= 22.8

References & Advisories

相关漏洞威胁