August 30, 2026

CVE Watchtower


← Back to CVE List

CVE-2023-46805NVD

Vulnerability Summary

An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access restricted resources by bypassing control checks.
Severity Level
HIGH(8.2)
Published Date
Jan 12, 2024
Last Modified
Aug 4, 2026
Exploitation Status
ACTIVE
EPSS Score (30-Day)
99.99%Probability
Root Weakness (CWE)
When an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct.
CVSS v3.1 Base Metrics
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityLow
AvailabilityNone