{"id":"CVE-2025-0282","title":"A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve…","summary":"A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve…","severity":"critical","cvss":9,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","cwe":["CWE-121","CWE-787"],"vendor":"ivanti","product":"connect_secure","affected":["connect_secure = 22.7","neurons_for_zero-trust_access = 22.7","policy_secure = 22.7"],"published":"2025-01-08","updated":"2026-08-04","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-0282","references":[{"url":"https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Connect-Secure-Policy-Secure-ZTA-Gateways-CVE-2025-0282-CVE-2025-0283","label":"3c1d8aa1-5a33-4ea4-8992-aadd6440af75"},{"url":"https://cloud.google.com/blog/topics/threat-intelligence/ivanti-connect-secure-vpn-zero-day","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.cisa.gov/cisa-mitigation-instructions-cve-2025-0282","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/sfewer-r7/CVE-2025-0282","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"url":"https://labs.watchtowr.com/exploitation-walkthrough-and-techniques-ivanti-connect-secure-rce-cve-2025-0282/","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-0282","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=CVE-2025-0282","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild","exploit-available"],"epss":0.99979,"epssPercentile":0.9998,"kev":true,"kevDateAdded":"2025-01-08","kevDueDate":"2025-01-15","kevRansomware":true,"exploited":true,"exploitAvailable":true,"zeroDay":true,"ingestedAt":"2026-08-04T05:36:12.727Z","exploits":{"exploitdb":true,"github":11,"githubRepos":["https://github.com/absholi7ly/CVE-2025-0282-Ivanti-exploit","https://github.com/AnonStorks/CVE-2025-0282-Full-version","https://github.com/rxwx/pulse-meter"],"nuclei":["CVE-2025-0282"],"checkedAt":"2026-09-08T15:36:50.180Z"},"slug":"CVE-2025-0282","body":"## Overview\n\nA stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve remote code execution.\n\n## Affected\n\n- `connect_secure = 22.7`\n- `neurons_for_zero-trust_access = 22.7`\n- `policy_secure = 22.7`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"hadal","depthScore":99,"depthScoreParts":{"impact":49.5,"likelihood":20,"exploitation":25,"ransomware":5},"changes":[]}