AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-29848

HIGH · CVSS 7.2 EPSS 64.42%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-05-31 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.2. It affects Ivanti. Its EPSS score suggests a 64.4% probability of exploitation in the next 30 days.

CVE
CVE-2024-29848
Severity
HIGH
CVSS
7.2
EPSS
64.42%
Ivanti

Original NVD Description

An unrestricted file upload vulnerability in web component of Ivanti Avalanche before 6.4.x allows an authenticated, privileged user to execute arbitrary commands as SYSTEM.

Related CVEs

Other vulnerabilities affecting the same vendor(s)