Ivanti修補端點管理程式EPM重大層級的SQL注入漏洞
支付動態 · 2024-05-24

Ivanti本週發布5月份資安公告,修補旗下產品16個漏洞,其中,危險程度最高的漏洞,皆與Ivanti Endpoint Manager(EPM)有關而值得留意

5月21日資安業者Ivanti發布本月份資安公告,修補Avalanche、Neurons for ITSM、Connect Secure(ICS)、Secure Access、Endpoint Manager(EPM)等旗下產品16個漏洞。

值得留意的是,這次有超過半數漏洞與EPM有關,而且,這些漏洞多為高風險或重大層級。本次Ivanti共為EPM修補10個漏洞,這些漏洞皆為SQL注入漏洞,存在於EPM核心伺服器,影響2022 SU5以前的版本,一旦遭到利用,攻擊者就能在未經身分驗證的情況下,透過EPM所在的網路環境執行任意程式碼,CVSS風險評分有6個為9.6分,其餘為8.4分。

該公司為EPM 2022 SU5發布熱修補檔案,IT人員應依照指示置換特定路徑的檔案,並關閉EPM Console、執行IISReset來完成修補。

而對於本次修補的漏洞,Ivanti表示皆尚未發現遭到利用的跡象。

Popular articles
B2B Tech Infrastructure Gains Momentum in Philippine Gaming Sector
Southeast Asia
Vietnam's tightening online gaming policy creates new market opportunities
Southeast Asia
UK MPs reopen 2025 gambling inquiry as reform stalls
Regulation
Are you ready to maximize your earnings? Try ProPush.me Constructor!
Marketing
Full House at GAT Expo Cartagena 2026 Academic Agenda
Online Game
Super PAC Raises $48 Million: Sports Betting Forces Ramp Up Political Push
Regulation
Gaming & Technology Expo Makes a Powerful Entrance in CDMX
Marketing
Kazakhstan plans to penalise online casino promotions
Regulation
HUIDU Invites You to Booth T70 at iGB L!VE 2026 — Let’s Ignite London This July!
HUIDU Focus
Across 6 Cities: HUIDU Invites You to 8 World Cup Parties Redefining High-Value Social Networking
HUIDU Focus
1spin4win releases unique slot Don Catleone Hold and Win featuring gangster cats
Online Game
GAT Expo Puerto Rico Will Pulse with the New Era of Gaming in the Caribbean
Marketing
GGC Awards 2026 Shines in Colombo: Honoring Leaders and Innovators in the iGaming Industry
HUIDU Focus
1spin4win grows its Latin American presence by partnering with Fortuna Juegos
Online Game
SBC Summit Canada to Make Player Safety a Key Pillar of 2026 Agenda
Marketing
Home
Game
Cooperation
Find
My