CVE-2024-37397 | Ivanti EPM 2024/up to 2022 SU5 Provisioning Web Service xml external entity reference
A vulnerability, which was classified as problematic, was found in Ivanti EPM up to 2022 SU5/2024. This affects an unknown part of the component Provisioning Web Service. The manipulation leads to xml external entity reference.
This vulnerability is uniquely identified as CVE-2024-37397. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.