Critical Ivanti Zero-Day Under Active Attack: Remote Code Execution Threatens Enterprise Security
Critical security vulnerability (CVE-2025-0282) in Ivanti Connect Secure, Policy Secure, and ZTA Gateways enables unauthenticated remote code execution. Under active exploitation by China-linked threat actor UNC5337 since December 2024, the flaw (CVSS 9.0) affects versions prior to 22.7R2....
