CVE-2025-22464 - CVE House
Back to Database
Status published Medium CVE-2025-22464

An untrusted pointer dereference vulnerability in Ivanti Endpoint Manager before...

Vulnerability Description

An untrusted pointer dereference vulnerability in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an attacker with local access to write arbitrary data into memory causing a denial-of-service condition.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-22464

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Endpoint Manager
Vulnerable Versions:
2024 SU1, 2022 SU7

Timeline

Official Publish: April 8th, 2025
Last Modified: April 8th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

Weaknesses (CWE)