CVE-2025-22457 - Ivanti Connect Secure stack buffer overflow
A stack-based buffer overflow can allow a remote unauthenticated attacker to achieve remote code execution in affected Ivanti gateway products.
Tags: buffer-overflow, unauthenticated, rce, ivanti, exploited
- Product
- Ivanti Connect Secure, Policy Secure, and ZTA Gateways
- Severity
- critical (CVSS 9)
- Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H- Published / added
- 2025-04-03
- Signals
- CISA KEV