Ivanti warns of three more CSA zero-days exploited in attacks

Share:

American IT software company Ivanti has released security updates to fix three new Cloud Services Appliance (CSA) zero-days tagged as actively exploited in attacks.

As Ivanti revealed on Tuesday, attackers are chaining the three security flaws with another CSA zero-day patched in September.

Successful exploitation of these vulnerabilities can let remote attackers run SQL statements via SQL injection, execute arbitrary code via command injection, and bypass security restrictions by abusing a path traversal weakness on vulnerable CSA gateways (used to provide enterprise users secure access to internal network resources).

“We are aware of a limited number of customers running CSA 4.6 patch 518 and prior who have been exploited when CVE-2024-9379, CVE-2024-9380 or CVE-2024-9381 are chained with CVE-2024-8963,” Ivanti warned.

The company says the flaws impact CSA 5.0.1 and earlier and recommends customers who suspect their systems have been compromised in these attacks to rebuild their CSA appliances with version 5.0.2.

To detect exploitation attempts, admins should review alerts from endpoint detection and response (EDR) or other security software. They can also observe signs of compromise by checking for new or modified admin users.

Since CSA 4.6 is an end-of-life product that received the last security patch in September, customers still running this version are advised to upgrade to CSA 5.0.2 as soon as possible.

“Additionally, it is important for customers to know that we have not observed exploitation of these vulnerabilities in any version of CSA 5.0,” the company added.

Multiple Ivanti zero-days under active exploitation

Last month, Ivanti warned that threat actors were chaining an admin bypass vulnerability (CVE-2024-8963) with a command injection bug (CVE-2024-8190) to bypass admin authentication and execute arbitrary commands on unpatched CSA appliances.

CISA added the two Ivanti flaws to its Known Exploited Vulnerabilities catalog and ordered federal agencies to secure vulnerable systems by October 10.

This stream of actively exploited zero-day disclosures comes as the company says it escalated testing and internal scanning capabilities and is working on improving its responsible disclosure process to address security issues faster.

“Ivanti is making a large investment in Secure by Design across our organization and signed the CISA Secure by Design pledge in May,” Ivanti said today.

Several flaws were exploited as zero-days in widespread attacks in recent months, targeting Ivanti VPN appliancesand ICS, IPS, and ZTA gateways.

Ivanti says it has over 7,000 partners and over 40,000 companies use its products to manage their systems and IT assets worldwide.

Sergiu Gatlan

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
5:02 am, Jun 26, 2025
weather icon 19°C
L: 17° | H: 19°
few clouds
Humidity: 81 %
Pressure: 1009 mb
Wind: 12 mph WSW
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 20%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:44 am
Sunset: 9:21 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
17° | 19°°C 1 mm 100% 15 mph 85 % 1018 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
15° | 27°°C 0 mm 0% 13 mph 66 % 1022 mb 0 mm/h
Sat Jun 28 10:00 pm
weather icon
17° | 28°°C 0 mm 0% 10 mph 87 % 1024 mb 0 mm/h
Sun Jun 29 10:00 pm
weather icon
19° | 33°°C 0 mm 0% 10 mph 83 % 1025 mb 0 mm/h
Mon Jun 30 10:00 pm
weather icon
20° | 35°°C 0 mm 0% 13 mph 60 % 1019 mb 0 mm/h
Today 7:00 am
weather icon
18° | 19°°C 0 mm 0% 9 mph 80 % 1009 mb 0 mm/h
Today 10:00 am
weather icon
22° | 23°°C 0 mm 0% 13 mph 63 % 1010 mb 0 mm/h
Today 1:00 pm
weather icon
20° | 20°°C 0.81 mm 81% 10 mph 85 % 1012 mb 0 mm/h
Today 4:00 pm
weather icon
24° | 24°°C 1 mm 100% 15 mph 36 % 1012 mb 0 mm/h
Today 7:00 pm
weather icon
21° | 21°°C 0.08 mm 8% 14 mph 36 % 1015 mb 0 mm/h
Today 10:00 pm
weather icon
18° | 18°°C 0 mm 0% 10 mph 48 % 1018 mb 0 mm/h
Tomorrow 1:00 am
weather icon
16° | 16°°C 0 mm 0% 8 mph 59 % 1020 mb 0 mm/h
Tomorrow 4:00 am
weather icon
15° | 15°°C 0 mm 0% 6 mph 66 % 1021 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€92,339.72
1.45%
Ethereum(ETH)
€2,129.02
1.47%
Tether(USDT)
€0.86
0.00%
XRP(XRP)
€1.88
0.59%
Solana(SOL)
€125.02
0.12%
USDC(USDC)
€0.86
0.00%
Dogecoin(DOGE)
€0.142045
0.06%
Shiba Inu(SHIB)
€0.000010
-0.21%
Pepe(PEPE)
€0.000009
-4.82%
Scroll to Top