← Back to CVE List

CVE-2024-37397

Published: 2024-09-12T02:15Z
Last Modified: 2024-09-13T16:35Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An External XML Entity (XXE) vulnerability in the provisioning web service of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenticated attacker to leak API secrets. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt