Detection: Ivanti Connect Secure Command Injection Attempts

Updated Date: 2024-09-30 ID: 1f32a7e0-a060-4545-b7de-73fcf9ad536e Author: Michael Haag, Splunk Type: TTP Product: Splunk Enterprise Security Description The following analytic identifies attempts to exploit the CVE-2023-46805 and CVE-2024-21887 vulnerabilities in Ivanti Connect Secure. It detects P…