CVE-2024-27978

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
19/04/2024
Last modified:
06/05/2025

Description

A Null Pointer Dereference vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ivanti:avalanche:*:*:*:*:*:*:*:* 6.4.3.528 (excluding)