Detection: Ivanti Connect Secure System Information Access via Auth Bypass

Updated Date: 2024-09-30 ID: d51c13dd-a232-4c83-a2bb-72ab36233c5d Author: Michael Haag, Splunk Type: Anomaly Product: Splunk Enterprise Security Description The following analytic identifies attempts to exploit the CVE-2023-46805 and CVE-2024-21887 vulnerabilities in Ivanti Connect Secure. It detec…