QID 379325
Date Published: 2024-02-08
QID 379325: Ivanti Secure Access Client (SAC) Local Privilege Escalation Vulnerability
A logged in Windows user can leverage functionality of the Pulse Secure / Ivanti Secure Access Client or Pulse Secure Installer Service to carry out a privilege escalation on the user machine.
Affected Versions:
Secure Access Client - Prior to 22.6R1.1
QID Detection Logic (Authenticated):
This QID checks the vulnerable file version using the registry key
This exploit could allow a locally authenticated attacker to exploit a vulnerable configuration, potentially leading to various security risks, including the escalation of privileges, denial of service on the user machine, or information disclosure.
Solution
Refer to Ivanti Advisory Ivanti Security Updates for additional information on obtaining the fixes.
Vendor References
CVEs related to QID 379325
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Ivanti Security Adivsory |
|