CVE-2023-41724: Ivanti Standalone Sentry

High severity, CVSS 8.8. EPSS: 12.8% chance of exploitation in the next 30 days.

A command injection vulnerability in Ivanti Sentry prior to 9.19.0 allows unauthenticated threat actor to execute arbitrary commands on the underlying operating system of the appliance within the same physical or logical network.

Affected products

  • Ivanti Standalone Sentry: before 9.19.0 (fixed in 9.19.0)

Published 2024-03-31. Last modified 2026-06-17.