Description
The Ivanti Connect Secure and Ivanti Policy Secure Gate have a remote command injection vulnerability. An attacker can bypass the authentication using CVE-2023-46805 and exploit the RCE to compromise the system.
Remediation
Upgrade to the latest version of Ivanti Connect Secure / Policy Secure