HTTP: Ivanti Connect Secure Server-Side Request Forgery

This signature detects attempts to exploit a known vulnerability against Ivanti Connect Secure. A successful attack can lead to sensitive information disclosure.

Extended Description

A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) and Ivanti Neurons for ZTA allows an attacker to access certain restricted resources without authentication.

Affected Products

Ivanti neurons_for_zero-trust_access

References

CVE: CVE-2024-21893

Short Name
HTTP:CTS:IVANTI-CNT-SCRE-SSRF
Severity
Major
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
CVE-2024-21893 Connect Forgery Ivanti Request Secure Server-Side
Release Date
02/08/2024
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Rarely
Vendors

Ivanti

Found a potential security threat?