Missing authorization in the admin console of Ivanti Virtual Application Delivery Controller before version 22.9 allows a remote authenticated attacker to take over admin accounts by resetting the password
References
Configurations
History
No history.
Information
Published : 2025-08-12 15:15
Updated : 2026-01-12 18:50
NVD link : CVE-2025-8310
Mitre link : CVE-2025-8310
CVE.ORG link : CVE-2025-8310
JSON object : View
Products Affected
ivanti
- virtual_application_delivery_controller
CWE
CWE-862
Missing Authorization
