CVE-2026-7431

MEDIUMCVSS 4.40% EPSS

An incorrect permission assignment for critical resource of Ivanti Secure Access Client   before 22.8R6 allows a local authenticated user to read or modify sensitive log data via write access to a shared memory section.

Published 2026-05-12 · last modified 2026-06-17

Affected products

VendorProduct
ivantisecure_access_client

Full record at NVD ↗

← Get alerted the moment a CVE hits your gear — subscribe free

Ncerio by BeyondNets · data from NVD, CISA KEV, EPSS.