CVE-2025-0282 is a critical stack-based buffer overflow vulnerability affecting Ivanti Connect Secure, Policy Secure, and Neurons for ZTA gateways. This flaw allows remote, unauthenticated attackers to achieve remote code execution with high impact on confidentiality, integrity, and availability. The vulnerability has a CVSS score of 9.0 (Critical) and an EPSS score indicating extremely high exploitability. It is actively exploited in the wild, including in known ransomware campaigns, and CISA has warned about associated RESURGE malware. Public exploit code is available, and the vulnerability has garnered significant community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
22.7CPE matchmatch criteria | cpe:2.3:a:ivanti:connect_secure:22.7:r2:*:*:*:*:*:* | ||
22.7CPE matchmatch criteria | cpe:2.3:a:ivanti:connect_secure:22.7:r2.1:*:*:*:*:*:* | ||
22.7CPE matchmatch criteria | cpe:2.3:a:ivanti:connect_secure:22.7:r2.2:*:*:*:*:*:* | ||
22.7CPE matchmatch criteria | cpe:2.3:a:ivanti:connect_secure:22.7:r2.3:*:*:*:*:*:* | ||
22.7CPE matchmatch criteria | cpe:2.3:a:ivanti:connect_secure:22.7:r2.4:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.4 Reddit, 1.2 Bluesky, 0.8 Mastodon, and 2.3 GitHub mentions.
The average CVE in this peer group has 0.8 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.