Description
A SQL injection vulnerability in web component of Ivanti Neurons for ITSM allows a remote authenticated user to read/modify/delete information in the underlying database. This may also lead to DoS.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19657 | A SQL injection vulnerability in web component of Ivanti Neurons for ITSM allows a remote authenticated user to read/modify/delete information in the underlying database. This may also lead to DoS. |
References
History
Mon, 30 Jun 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ivanti
Ivanti neurons For Itsm |
|
| CPEs | cpe:2.3:a:ivanti:neurons_for_itsm:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ivanti
Ivanti neurons For Itsm |
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-01T22:35:34.845Z
Reserved: 2024-01-05T01:04:06.642Z
Link: CVE-2024-22059
Updated: 2024-08-01T22:35:34.845Z
Status : Analyzed
Published: 2024-05-31T18:15:10.493
Modified: 2025-06-30T18:33:46.630
Link: CVE-2024-22059
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD