CVE-2025-8296
12.08.2025, 15:15
SQL injection in Ivanti Avalanche before version 6.4.8.8008 allows a remote authenticated attacker with admin privileges to execute arbitrary SQL queries. In certain conditions, this can also lead to remote code execution
Vendor | Product | Version |
---|---|---|
ivanti | avalanche | 𝑥 < 6.4.8.8008 |
𝑥
= Vulnerable software versions