Sploitus

CVE-2023-46805

21 known exploits for CVE-2023-46805

An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access restricted resources by bypassing control checks.

Ivanti Connect Secure
= 9.0, 9.1, 22.1, 22.2, 22.3, 22.4, 22.5, 22.6
Ivanti Policy Secure
= 9.0, 9.1, 22.1, 22.2, 22.3, 22.4, 22.5, 22.6
CVSS 3.1
8.2 HIGH
EPSS
100.0% (100th percentile)
Weakness
CWE-287
NVD status
Analyzed
Published
2024-01-12
CVE-2023-46805 at NVD
Authoritative description, scoring and affected products

21 known exploits for CVE-2023-46805

Proof-of-concept code and exploit modules indexed by Sploitus

CVE-2023-46805_CVE-2024-21887
2026-08-27 KitPloitKITPLOIT
CVE-2023-46805_CVE-2024-21887
2026-08-27 KitPloitKITPLOIT
CVE-2023-46805
2026-08-27 KitPloitKITPLOIT
CVE-2023-46805
2026-08-27 KitPloitKITPLOIT
CVE-2023-21887
2026-08-26 KitPloitKITPLOIT
CVE-2023-46805
2026-08-26 KitPloitKITPLOIT
Exploit for Deserialization of Untrusted Data in Facebook React
2025-12-13 TheStingRGITHUB
Ivanti Connect Secure Unauthenticated Remote Code Execution Exploit
2024-02-21 metasploitZDTRuby
Ivanti Connect Secure Unauthenticated Remote Code Execution
2024-02-21 sfewer-r7, metasploit.comPACKETSTORMRuby
Exploit for Improper Authentication in Ivanti Connect_Secure
2024-01-25 w2xim3GITHUB
Ivanti Connect Secure Unauthenticated Remote Code Execution Exploit
2024-01-22 metasploitZDTRuby
Ivanti Connect Secure Unauthenticated Remote Code Execution
2024-01-22 sfewer-r7, metasploit.comPACKETSTORMRuby
Exploit for Improper Authentication in Ivanti Connect_Secure
2024-01-19 ChocapikkGITHUB
Exploit for Improper Authentication in Ivanti Connect_Secure
2024-01-18 raminkarimkhani1996GITHUB
Ivanti Connect Secure and Policy Secure authentication bypass and command injection
2024-01-18 SAINT CorporationSAINT
Ivanti Connect Secure and Policy Secure authentication bypass and command injection
2024-01-18 SAINT CorporationSAINT
Exploit for Improper Authentication in Ivanti Connect_Secure
2024-01-16 cbeek-r7GITHUB
Exploit for Improper Authentication in Ivanti Connect_Secure
2024-01-16 duy-31GITHUB
Exploit for Improper Authentication in Ivanti Connect_Secure
2024-01-14 yoryioGITHUB
Exploit for Improper Authentication in Ivanti Connect_Secure
2024-01-14 yoryioGITHUB
Ivanti Connect Secure Unauthenticated Remote Code Execution
2024-01-10 sfewer-r7METASPLOITRuby