CVE-2023-46805
An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access...
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- October 27, 2023
- Published Date
- January 12, 2024
- Last Updated
- February 13, 2025
- Vendor
- Ivanti
- Product
- ICS, IPS
- Description
- An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access restricted resources by bypassing control checks.
CVSS Scores
CVSS v3.0
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
SSVC Information
- Exploitation
- active
- Automatable
- Yes
- Technical Impact
- partial
References
Known Exploited Vulnerability Information
Source | Added Date |
---|---|
CISA | 2024-01-10 00:00:00 UTC |
Recent Mentions
Verizon 2025 DBIR: Tenable Research Collaboration Shines a Spotlight on CVE Remediation Trends
Source: Tenable Blog • Published: 2025-04-23 04:05:00 UTC
Scanner Integrations
Scanner | URL | Date Detected |
---|---|---|
Metasploit | https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/ivanti_connect_secure_rce_cve_2023_46805.rb | 2025-04-29 11:01:13 UTC |
Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-46805.yaml | 2025-04-26 00:00:00 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
w2xim3/CVE-2023-46805
Type: github • Created: 2024-01-25 14:53:16 UTC • Stars: 2
Chocapikk/CVE-2023-46805
Type: github • Created: 2024-01-19 02:23:13 UTC • Stars: 12
raminkarimkhani1996/CVE-2023-46805_CVE-2024-21887
Type: github • Created: 2024-01-18 13:25:46 UTC • Stars: 5
duy-31/CVE-2023-46805_CVE-2024-21887
Type: github • Created: 2024-01-16 19:40:59 UTC • Stars: 21
cbeek-r7/CVE-2023-46805
Type: github • Created: 2024-01-16 08:05:58 UTC • Stars: 5
yoryio/CVE-2023-46805
Type: github • Created: 2024-01-14 18:30:11 UTC • Stars: 10