This page lists publicly disclosed CVE vulnerabilities affecting ivanti application_control (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2024-10630 | A race condition in Ivanti Application Control Engine before version 10.14.4.0 allows a local authenticated attacker to bypass the application blocking functionality. | 3c1d8aa1-5a33-4ea4-8992-aadd6440af75 | 7.8 | 0.06% | 2025-01-14 | 2025-07-11 |
| CVE-2024-11598 | Under specific circumstances, insecure permissions in Ivanti Application Control before version 2024.3 HF1, 2024.1 HF2, or 2023.3 HF3 allows a local authenticated attacker to achieve local privilege escalation. | 3c1d8aa1-5a33-4ea4-8992-aadd6440af75 | 7.8 | 0.33% | 2024-12-11 | 2025-01-23 |