
CVE-2024-13161: CISA added Ivanti EPM CVE-2024-13161 to KEV: an absolute path traversal letting remote, unauth attackers leak sensitive data. What happened CISA added CVE-2024-13161 to the Known Exploited Vulnerabilities (KEV) catalog, signaling confirmed exploitation in…
Post summary
CISA has added CVE-2024-13161 to its KEV catalog, indicating that this absolute path traversal vulnerability in Ivanti EPM is being actively exploited to allow remote unauthenticated attackers to read sensitive data.
