CVE-2026-7431

An incorrect permission assignment for critical resource of Ivanti Secure Access Client   before 22.8R6 allows a local authenticated user to read or modify sensitive log data via write access to a shared memory section.

medium 4.4 CVSS 3.1
Published: May 12, 2026
Modified: May 12, 2026
Vendor: Ivanti
Product: Secure Access Client
Versions: 22.8

Description

An incorrect permission assignment for critical resource of Ivanti Secure Access Client   before 22.8R6 allows a local authenticated user to read or modify sensitive log data via write access to a shared memory section.

References

Related CVEs