Vulnerability Details CVE-2024-8540
Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker to modify sensitive application components.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.3%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2024-8540
-
cpe:2.3:a:ivanti:standalone_sentry:-
-
cpe:2.3:a:ivanti:standalone_sentry:10.0.1
-
cpe:2.3:a:ivanti:standalone_sentry:9.14.0
-
cpe:2.3:a:ivanti:standalone_sentry:9.15.0
-
cpe:2.3:a:ivanti:standalone_sentry:9.16.0
-
cpe:2.3:a:ivanti:standalone_sentry:9.17.0
-
cpe:2.3:a:ivanti:standalone_sentry:9.18.0
-
cpe:2.3:a:ivanti:standalone_sentry:9.19.0
-
cpe:2.3:a:ivanti:standalone_sentry:9.19.2
-
cpe:2.3:a:ivanti:standalone_sentry:9.20.0
-
cpe:2.3:a:ivanti:standalone_sentry:9.20.1