CVE-2024-8540: Ivanti Standalone Sentry

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker to modify sensitive application components.

Affected products

  • Ivanti Standalone Sentry: before 9.20.2 (fixed in 9.20.2); version 10.0.1 only

Published 2024-12-10. Last modified 2026-06-17.