CVE-2022-44569 is an improper authentication vulnerability affecting Ivanti Automation that stems from insecure inter-process communication mechanisms. Rated as High severity with a CVSS score of 7.8, this flaw allows a locally authenticated attacker with low privileges to bypass authentication controls, potentially resulting in a complete compromise of system confidentiality, integrity, and availability. Intelligence sources currently indicate no evidence of active exploitation in the wild, and there are no known public exploits or significant community discussions regarding this issue.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2023.4CPE matchmatch criteria | cpe:2.3:a:ivanti:automation:*:*:*:*:*:*:*:* | ||
>= 2023.4, < 2023.4CPE match | cpe:2.3:a:ivanti:automation:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.