Ivanti warns of three more CSA zero-days exploited in attacks

Share:

American IT software company Ivanti has released security updates to fix three new Cloud Services Appliance (CSA) zero-days tagged as actively exploited in attacks.

As Ivanti revealed on Tuesday, attackers are chaining the three security flaws with another CSA zero-day patched in September.

Successful exploitation of these vulnerabilities can let remote attackers run SQL statements via SQL injection, execute arbitrary code via command injection, and bypass security restrictions by abusing a path traversal weakness on vulnerable CSA gateways (used to provide enterprise users secure access to internal network resources).

“We are aware of a limited number of customers running CSA 4.6 patch 518 and prior who have been exploited when CVE-2024-9379, CVE-2024-9380 or CVE-2024-9381 are chained with CVE-2024-8963,” Ivanti warned.

The company says the flaws impact CSA 5.0.1 and earlier and recommends customers who suspect their systems have been compromised in these attacks to rebuild their CSA appliances with version 5.0.2.

To detect exploitation attempts, admins should review alerts from endpoint detection and response (EDR) or other security software. They can also observe signs of compromise by checking for new or modified admin users.

Since CSA 4.6 is an end-of-life product that received the last security patch in September, customers still running this version are advised to upgrade to CSA 5.0.2 as soon as possible.

“Additionally, it is important for customers to know that we have not observed exploitation of these vulnerabilities in any version of CSA 5.0,” the company added.

Multiple Ivanti zero-days under active exploitation

Last month, Ivanti warned that threat actors were chaining an admin bypass vulnerability (CVE-2024-8963) with a command injection bug (CVE-2024-8190) to bypass admin authentication and execute arbitrary commands on unpatched CSA appliances.

CISA added the two Ivanti flaws to its Known Exploited Vulnerabilities catalog and ordered federal agencies to secure vulnerable systems by October 10.

This stream of actively exploited zero-day disclosures comes as the company says it escalated testing and internal scanning capabilities and is working on improving its responsible disclosure process to address security issues faster.

“Ivanti is making a large investment in Secure by Design across our organization and signed the CISA Secure by Design pledge in May,” Ivanti said today.

Several flaws were exploited as zero-days in widespread attacks in recent months, targeting Ivanti VPN appliancesand ICS, IPS, and ZTA gateways.

Ivanti says it has over 7,000 partners and over 40,000 companies use its products to manage their systems and IT assets worldwide.

Sergiu Gatlan

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
11:29 am, Jun 12, 2025
weather icon 22°C
L: 21° | H: 24°
overcast clouds
Humidity: 62 %
Pressure: 1011 mb
Wind: 6 mph SE
Wind Gust: 12 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 100%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:43 am
Sunset: 9:17 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
21° | 24°°C 1 mm 100% 12 mph 76 % 1015 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
16° | 28°°C 1 mm 100% 9 mph 93 % 1020 mb 0 mm/h
Sat Jun 14 10:00 pm
weather icon
16° | 23°°C 0.8 mm 80% 13 mph 98 % 1020 mb 0 mm/h
Sun Jun 15 10:00 pm
weather icon
13° | 21°°C 0.2 mm 20% 10 mph 85 % 1025 mb 0 mm/h
Mon Jun 16 10:00 pm
weather icon
13° | 24°°C 0 mm 0% 7 mph 86 % 1028 mb 0 mm/h
Today 1:00 pm
weather icon
22° | 22°°C 0 mm 0% 12 mph 59 % 1011 mb 0 mm/h
Today 4:00 pm
weather icon
24° | 25°°C 1 mm 100% 11 mph 57 % 1012 mb 0 mm/h
Today 7:00 pm
weather icon
25° | 25°°C 0.75 mm 75% 10 mph 66 % 1013 mb 0 mm/h
Today 10:00 pm
weather icon
20° | 20°°C 0 mm 0% 4 mph 76 % 1015 mb 0 mm/h
Tomorrow 1:00 am
weather icon
18° | 18°°C 0 mm 0% 3 mph 82 % 1016 mb 0 mm/h
Tomorrow 4:00 am
weather icon
16° | 16°°C 0 mm 0% 3 mph 84 % 1017 mb 0 mm/h
Tomorrow 7:00 am
weather icon
18° | 18°°C 0 mm 0% 6 mph 78 % 1019 mb 0 mm/h
Tomorrow 10:00 am
weather icon
22° | 22°°C 0 mm 0% 7 mph 58 % 1020 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€93,347.40
-1.72%
Ethereum(ETH)
€2,387.64
-0.70%
Tether(USDT)
€0.87
0.01%
XRP(XRP)
€1.95
-3.41%
Solana(SOL)
€138.19
-3.51%
USDC(USDC)
€0.87
0.01%
Dogecoin(DOGE)
€0.163853
-5.75%
Shiba Inu(SHIB)
€0.000011
-3.74%
Pepe(PEPE)
€0.000010
-2.83%
Peanut the Squirrel(PNUT)
€0.238785
-5.02%
Scroll to Top