Exploiting an Authentication Bypass in Ivanti Avalanche

Описание к видео Exploiting an Authentication Bypass in Ivanti Avalanche

This video demonstrates how an unauthenticated user could access an Ivanti Avalanche server. The specific flaw exists within the handling of JNLP files. The issue results from improper access control. An attacker can leverage this vulnerability to bypass authentication on the system. It was patched in Avalanche version 6.3.3.

For full details on the vulnerability, see the blog at:
https://www.zerodayinitiative.com/blo...

Комментарии

Информация по комментариям в разработке