CVE-2026-7431
EUVD-2026-2948512.05.2026, 15:16
An incorrect permission assignment for critical resource of Ivanti Secure Access Client before 22.8R6 allows a local authenticated user to read or modify sensitive log data via write access to a shared memory section.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ivanti | secure_access_client | 𝑥 ≤ 22.7 |
| ivanti | secure_access_client | 22.8 |
| ivanti | secure_access_client | 22.8:r1 |
| ivanti | secure_access_client | 22.8:r2 |
| ivanti | secure_access_client | 22.8:r3 |
| ivanti | secure_access_client | 22.8:r4 |
| ivanti | secure_access_client | 22.8:r5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration