Jan. 7, 2024, 7:19 a.m. |

BankInfoSecurity.com RSS Syndication www.bankinfosecurity.com

SQL Injection Flaw Affects All Supported Versions of Ivanti Endpoint Manager
Ivanti issued an urgent alert to users of its endpoint security product to patch a critical vulnerability that exposes systems to potential exploitation by unauthorized attackers. The SQL injection vulnerability tracked as CVE-2023-39336 is in all supported versions of Ivanti Endpoint Manager.

alert attackers critical critical vulnerability cve endpoint endpoint security exploitation flaw injection injection flaw ivanti ivanti endpoint manager manager patch patches product security security product security vulnerability sql sql injection systems urgent vulnerability

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Network Security Engineer

@ Meta | Menlo Park, CA | Remote, US

Security Engineer, Investigations - i3

@ Meta | Washington, DC

Threat Investigator- Security Analyst

@ Meta | Menlo Park, CA | Seattle, WA | Washington, DC

Security Operations Engineer II

@ Microsoft | Redmond, Washington, United States

Engineering -- Tech Risk -- Global Cyber Defense & Intelligence -- Bug Bounty -- Associate -- Dallas

@ Goldman Sachs | Dallas, Texas, United States