CVE-2024-21893 | Ivanti Connect Secure/Policy Secure up to 9.1R18/22.6R2 SAML server-side request forgery
A vulnerability was found in Ivanti Connect Secure and Policy Secure up to 9.1R18/22.6R2 and classified as critical. Affected by this vulnerability is an unknown functionality of the component SAML. Such manipulation leads to server-side request forgery.
This vulnerability is traded as CVE-2024-21893. The attack may be launched remotely. Furthermore, there is an exploit available.
It is best practice to apply a patch to resolve this issue.