Vulnerability Database

290,020

Total vulnerabilities in the database

CVE-2025-0283

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a local authenticated attacker to escalate their privileges.

  • Published: Jan 9, 2025
  • Updated: May 4, 2025
  • CVE: CVE-2025-0283
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7
  • AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

CWEs:

Software From Fixed in
ivanti / connect_secure - 9.1
ivanti / connect_secure 22.1-r1 22.1-r1.x
ivanti / connect_secure 9.1-r16.1 9.1-r16.1.x
ivanti / connect_secure 9.1-r16 9.1-r16.x
ivanti / connect_secure 9.1-r15 9.1-r15.x
ivanti / connect_secure 9.1-r15.2 9.1-r15.2.x
ivanti / connect_secure 9.1-r1 9.1-r1.x
ivanti / connect_secure 9.1-r4.3 9.1-r4.3.x
ivanti / connect_secure 9.1-r8 9.1-r8.x
ivanti / connect_secure 9.1-r10 9.1-r10.x
ivanti / connect_secure 9.1-r11 9.1-r11.x
ivanti / connect_secure 9.1-r11.3 9.1-r11.3.x
ivanti / connect_secure 9.1-r11.4 9.1-r11.4.x
ivanti / connect_secure 9.1-r11.5 9.1-r11.5.x
ivanti / connect_secure 21.9-r1 21.9-r1.x
ivanti / connect_secure 21.12-r1 21.12-r1.x
ivanti / connect_secure 22.1-r6 22.1-r6.x
ivanti / neurons_for_zero-trust_access 22.2-r1 22.2-r1.x
ivanti / connect_secure 9.1 9.1.x
ivanti / connect_secure 9.1-r1.0 9.1-r1.0.x
ivanti / connect_secure 9.1-r10.0 9.1-r10.0.x
ivanti / connect_secure 9.1-r10.2 9.1-r10.2.x
ivanti / connect_secure 9.1-r11.0 9.1-r11.0.x
ivanti / connect_secure 9.1-r11.1 9.1-r11.1.x
ivanti / connect_secure 9.1-r12 9.1-r12.x
ivanti / connect_secure 9.1-r12.1 9.1-r12.1.x
ivanti / connect_secure 9.1-r12.2 9.1-r12.2.x
ivanti / connect_secure 9.1-r13 9.1-r13.x
ivanti / connect_secure 9.1-r13.1 9.1-r13.1.x
ivanti / connect_secure 9.1-r14 9.1-r14.x
ivanti / connect_secure 9.1-r14.4 9.1-r14.4.x
ivanti / connect_secure 9.1-r17 9.1-r17.x
ivanti / connect_secure 9.1-r17.1 9.1-r17.1.x
ivanti / connect_secure 9.1-r17.2 9.1-r17.2.x
ivanti / connect_secure 9.1-r18 9.1-r18.x
ivanti / connect_secure 9.1-r18.1 9.1-r18.1.x
ivanti / connect_secure 9.1-r18.2 9.1-r18.2.x
ivanti / connect_secure 9.1-r18.3 9.1-r18.3.x
ivanti / connect_secure 22.7-r1.3 22.7-r1.3.x
ivanti / connect_secure 22.7-r1.4 22.7-r1.4.x
ivanti / connect_secure 22.7-r1.5 22.7-r1.5.x
ivanti / connect_secure 22.7-r2 22.7-r2.x
ivanti / connect_secure 22.7-r2.1 22.7-r2.1.x
ivanti / connect_secure 22.7-r2.2 22.7-r2.2.x
ivanti / connect_secure 22.7-r2.3 22.7-r2.3.x
ivanti / connect_secure 22.7-r2.4 22.7-r2.4.x
ivanti / neurons_for_zero-trust_access 22.7-r2 22.7-r2.x
ivanti / neurons_for_zero-trust_access 22.7-r2.2 22.7-r2.2.x
ivanti / neurons_for_zero-trust_access 22.7-r2.3 22.7-r2.3.x
ivanti / policy_secure 22.7-r1 22.7-r1.x
ivanti / policy_secure 22.7-r1.1 22.7-r1.1.x
ivanti / policy_secure 22.7-r1.2 22.7-r1.2.x
ivanti / connect_secure 9.1-r18.7 9.1-r18.7.x
ivanti / connect_secure 9.1-r18.8 9.1-r18.8.x
ivanti / connect_secure 9.1-r18.9 9.1-r18.9.x
ivanti / connect_secure 22.2 22.7
ivanti / connect_secure 22.7 22.7.x
ivanti / connect_secure 22.7-r1 22.7-r1.x
ivanti / connect_secure 22.7-r1.1 22.7-r1.1.x
ivanti / connect_secure 22.7-r1.2 22.7-r1.2.x
ivanti / neurons_for_zero-trust_access 22.7-r1 22.7-r1.x
ivanti / neurons_for_zero-trust_access 22.7-r1.2 22.7-r1.2.x
ivanti / neurons_for_zero-trust_access 22.7-r1.3 22.7-r1.3.x
ivanti / neurons_for_zero-trust_access 22.7-r1.4 22.7-r1.4.x
ivanti / neurons_for_zero-trust_access 22.7-r1.5 22.7-r1.5.x
ivanti / policy_secure - 22.7
ivanti / policy_secure 22.7 22.7.x
ivanti / neurons_for_zero-trust_access 22.2-r4 22.2-r4.x
ivanti / neurons_for_zero-trust_access 22.2-r5 22.2-r5.x
ivanti / neurons_for_zero-trust_access 22.3-r1 22.3-r1.x
ivanti / neurons_for_zero-trust_access 22.3-r4 22.3-r4.x
ivanti / neurons_for_zero-trust_access 22.4-r1 22.4-r1.x
ivanti / neurons_for_zero-trust_access 22.4-r3 22.4-r3.x
ivanti / neurons_for_zero-trust_access 22.5-r1 22.5-r1.x
ivanti / neurons_for_zero-trust_access 22.5-r1.2 22.5-r1.2.x
ivanti / neurons_for_zero-trust_access 22.6-r1 22.6-r1.x
ivanti / neurons_for_zero-trust_access 22.6-r1.2 22.6-r1.2.x
ivanti / neurons_for_zero-trust_access 22.6-r1.3 22.6-r1.3.x
ivanti / neurons_for_zero-trust_access 22.6-r1.5 22.6-r1.5.x
ivanti / neurons_for_zero-trust_access 22.6-r1.6 22.6-r1.6.x
ivanti / neurons_for_zero-trust_access 22.6-r1.7 22.6-r1.7.x
ivanti / neurons_for_zero-trust_access 22.7-r1.6 22.7-r1.6.x