Get the latest tech news

Multiple Attacks Force CISA to Order US Agencies to Upgrade or Remove End-of-Life Ivanti Appliance


On Tuesday Ivanti issued a "high severity vulnerability" announcement for version 4.6 of its Cloud Service Appliance (or CSA). "Successful exploitation could lead to unauthorized access to the device running the CSA." And Friday that announcement got an update: Ivanti "has confirmed exploitation...

On Tuesday Ivanti issued a "high severity vulnerability" announcement for version 4.6 of its Cloud Service Appliance (or CSA). And Friday that announcement got an update: Ivanti "has confirmed exploitation of this vulnerability in the wild." But in addition, CISA " ordered all federal civilian agencies to remove CSA 4.6. from service or upgrade to the 5.0. by October 4," reports the Record: Ivanti said users will know they are impacted by exploitation of the bug by looking to see if there are modified or newly added administrative users.

Get the Android app

Or read this on Slashdot

Read more on:

Photo of Life

Life

Photo of end

end

Photo of Agencies

Agencies

Related news:

News photo

Wild Thing: A Life of Paul Gauguin by Sue Prideaux Review

News photo

Breakthrough device allows user to be touched remotely in a ‘real-life’ way — and could be a cure for isolation

News photo

End of an era: iPhone 16 won’t include stickers in the box