Insufficiently restrictive permissions in Ivanti Secure Access Client before 22.7R4 allows a local authenticated attacker to escalate their privileges.
References
| Link | Resource |
|---|---|
| https://forums.ivanti.com/s/article/March-Security-Advisory-Ivanti-Secure-Access-Client-ISAC-CVE-2025-22454 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-03-11 15:15
Updated : 2025-07-16 15:25
NVD link : CVE-2025-22454
Mitre link : CVE-2025-22454
CVE.ORG link : CVE-2025-22454
JSON object : View
Products Affected
ivanti
- secure_access_client
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
