vulns.co
/
GKData.io MCP

Back to CVEs

CVE-2025-22457 - Ivanti Connect Secure stack buffer overflow

A stack-based buffer overflow can allow a remote unauthenticated attacker to achieve remote code execution in affected Ivanti gateway products.

Tags: buffer-overflow, unauthenticated, rce, ivanti, exploited

Product
Ivanti Connect Secure, Policy Secure, and ZTA Gateways
Severity
critical (CVSS 9)
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Published / added
2025-04-03
Signals
CISA KEV

References and evidence