CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects Ivanti. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2025-8310
Severity
MEDIUM
CVSS
6.5
EPSS
0.79%
Ivanti
Original NVD Description
Missing authorization in the admin console of Ivanti Virtual Application Delivery Controller before version 22.9 allows a remote authenticated attacker to take over admin accounts by resetting the password
Related CVEs
Other vulnerabilities affecting the same vendor(s)