CISA Issues Warning About Another Ivanti Flaw Under Active Attack
CISA Issues Warning on Active Exploitation of Ivanti Endpoint Manager Vulnerability
The U.S. government's cybersecurity agency, CISA (Cybersecurity and Infrastructure Security Agency), has issued a fresh alert warning of active exploitation of a vulnerability in one of Ivanti's widely used enterprise products - Ivanti Endpoint Manager (EPM). This tool helps organizations manage and secure their fleets of employee devices.
Vulnerability Details
The remote code execution flaw, tracked as CVE-2024-29824, was first disclosed by Trend Micro's Zero Day Initiative in April and patched by Ivanti the following month. However, hackers are now actively exploiting this vulnerability to hack into unpatched systems, according to CISA's advisory on Wednesday.
Impact of the Vulnerability
The bug allows an...