CVE-2023-41727

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Dec 19, 2023
Updated: Dec 21, 2023
CWE ID 787

Summary

CVE-2023-41727 is a newly disclosed vulnerability that affects the Mobile Device Server. An attacker can exploit this issue by sending maliciously crafted data packets, leading to memory corruption. This corruption may result in a Denial of Service (DoS) attack or even code execution. The precise methods of exploitation and potential impact on various systems are still under investigation. However, it is recommended that affected organizations apply patches promptly to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Ivanti Avalanche

Affected Vendors

  • Ivanti Software Inc.