CVE-2024-21887
EPSS Score
Source: FIRST.org · 2026-05-23CVSS v3.0
Source: VulnerabilityLookup (CIRCL)Description
VulnerabilityLookup (CNA)Affected Products
Attack Intelligence
Exploits & PoC
A command injection vulnerability in web components of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows an authenticated
An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access restri
Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.
POC Checker for ivanti CVE-2024-21887 Command injcetion
The script in this repository only checks whether the vulnerabilities specified in the Ivanti Connect Secure product exist.
A Python script for examining Ivanti Secure Connect (ICS) event logs, designed to support investigations into vulnerabilities CVE-2025-0282, CVE-2023-
Parses the System Snapshot from an Ivanti Connect Secure applicance to identify possible IOCs related to CVE-2023-46805, CVE-2024-21887 and CVE-2025-0
CVE-2024-21887 Exploitation with Ngrok Reverse Shell