On Thursday, April 3, 2025, Ivanti disclosed a critical security vulnerability, CVE-2025-22457, impacting Ivanti Connect Secure ("ICS") VPN appliances version 22.7R2.5 and earlier. CVE-2025-22457 is a buffer overflow vulnerability, and successful exploitation would result in remote code execution. Mandiant and Ivanti have identified evidence of active exploitation in the wild against ICS 9.X (end of life) and 22.7R2.5 and earlier versions. Ivanti and Mandiant encourage all customers to upgrade as soon as possible.
More Ways to Read:
🧃Summarize--The key takeaways that can be read in under a minute
Get access to the condensed version of this piece, and every other article on The Juice by AudiencePlus, and so much more.
Start a free account on The Juice and we'll send you weekly emails sharing which podcasts, blogs, guides,
etc. are trending with other marketing or sales pros. We call it the Top 5!
Copy the URL below and share to your favorite social platforms.
How it works
The shared link will allow the reader to click through to the final url for this piece, skipping the need to sign up or log in to engage with the content.