Vulnerability Details CVE-2024-22059
A SQL injection vulnerability in web component of Ivanti Neurons for ITSM allows a remote authenticated user to read/modify/delete information in the underlying database. This may also lead to DoS.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.042
EPSS Ranking 88.3%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2024-22059
-
cpe:2.3:a:ivanti:neurons_for_itsm:-
-
cpe:2.3:a:ivanti:neurons_for_itsm:2022.1
-
cpe:2.3:a:ivanti:neurons_for_itsm:2022.2
-
cpe:2.3:a:ivanti:neurons_for_itsm:2022.3
-
cpe:2.3:a:ivanti:neurons_for_itsm:2022.4
-
cpe:2.3:a:ivanti:neurons_for_itsm:2023.1
-
cpe:2.3:a:ivanti:neurons_for_itsm:2023.2