CVE-2024-7572: Ivanti Desktop & Server Management
High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.
Insufficient permissions in Ivanti DSM before version 2024.3.5740 allows a local authenticated attacker to delete arbitrary files.
Affected products
- Ivanti Desktop & Server Management: from 2024.2, before 2024.3.5740 (fixed in 2024.3.5740)
Published 2024-12-10. Last modified 2026-06-17.