Ivanti Wavelink vulnerabilities
4 known vulnerabilities affecting ivanti/wavelink.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4
Vulnerabilities
Page 1 of 1
CVE-2023-46216P2CRITICALCVSS 9.8≥ 6.4.1, ≤ 6.4.12023-12-19
CVE-2023-46216 [CRITICAL] CWE-787 CVE-2023-46216: An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corr
An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.
nvd
CVE-2023-46217P2CRITICALCVSS 9.8≥ 6.4.1, ≤ 6.4.12023-12-19
CVE-2023-46217 [CRITICAL] CWE-787 CVE-2023-46217: An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corr
An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.
nvd
CVE-2023-41727P2CRITICALCVSS 9.8≥ 6.4.1, ≤ 6.4.12023-12-19
CVE-2023-41727 [CRITICAL] CWE-787 CVE-2023-41727: An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corr
An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.
nvd
CVE-2023-32567P3CRITICALCVSS 9.8≥ 6.4.1.236, < 6.4.1.2362023-08-10
CVE-2023-32567 [CRITICAL] CWE-611 CVE-2023-32567: Ivanti Avalanche decodeToMap XML External Entity Processing. Fixed in version 6.4.1.236
Ivanti Avalanche decodeToMap XML External Entity Processing. Fixed in version 6.4.1.236
nvd