Connect Secure, Policy Secure, and Neurons vulnerabilities
1 published alerts for Ivanti Connect Secure, Policy Secure, and Neurons.
Actively exploited (KEV)Ransomware
Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request Forgery (SSRF) Vulnerability
Ivanti Connect Secure, Policy Secure, and Neurons is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2024-21893). Ivanti Connect Secure (ICS, formerly known as Pulse Connect Secure), Ivanti Policy Secure, and Ivanti Neurons contain a server-side request forgery (SSRF) vulnerability in the SAML component that allows an attacker to access certain restricted resources without authentication. CISA remediation due date: 2024-02-02. If you need help checking exposure, call (864) 335-9223.