← Back

CVE-2025-5464

nvd nist
Published: Jul 8, 2025Modified: Jul 15, 2025

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

Insertion of sensitive information into a log file in Ivanti Connect Secure before version 22.7R2.8 allows a local authenticated attacker to obtain that information.

Affected (16)

1 product
Connect Secure
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Ivanti
Before 22.7
Version 22.7
Version 22.7 r1.1
Version 22.7 r1.2
Version 22.7 r1.3
Version 22.7 r1.4
Version 22.7 r1.5
Version 22.7 r1
Version 22.7 r2.1
Version 22.7 r2.2
Version 22.7 r2.3
Version 22.7 r2.4
Version 22.7 r2.5
Version 22.7 r2.6
Version 22.7 r2.7
Version 22.7 r2

Timeline

No history available yet.