KEV Entry
CVE-2024-8190
Known Exploited Vulnerability Entry ENISA
Entry Details
Confirmed Exploited2025-01-17 01:00 CET
Timestamps
2025-01-17
2025-01-17
Scope
Affected: Ivanti / Cloud Services Appliance (CSA) | Description: OS command injection vulnerability in Ivanti Cloud Services Appliance versions 4.6 Patch 518 and before allows a remote authenticated attacker with admin privileges to obtain RCE. | Patched since: 2024/09/10 | Exploitation type: unknown | Origin source: CNW
References
- {'id': 'CVE-2024-8190', 'url': 'https://www.cve.org/CVERecord?id=CVE-2024-8190'}
- {'id': 'EUVD-2024-49004', 'url': 'https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-49004'}
ddf9b7a1-9e78-459f-bb38-2da2b70ae91c
ENISA
cce329bf-df49-4c6e-a027-80be2e6483bd
2026-10-02 08:52 CEST
2026-10-02 08:52 CEST
Evidence
1| Type | Source | Signal | Confidence | Details | GCVE Metadata |
|---|---|---|---|---|---|
| csirt_report | enisa-cnw-kev | successful_exploitation | 0.75 |
View details
|
- |