Patch
CVE-2024-29824
with vRx
🔒 CVE-2024-29824 Remediation
This script is designed to mitigate the critical vulnerability CVE-2024-29824 in Ivanti Endpoint Manager (EPM).
🔍 How it works:
This script automates the download and extraction of the necessary security patch, stops vulnerable services, backs up the old DLL files, replaces them with the patched versions, and unblocks the new files to ensure they can be executed properly.
⚠️ Why it matters:
CVE-2024-29824 is a critical SQL Injection vulnerability in the Core server of Ivanti EPM 2022 SU5 and prior versions. This vulnerability allows an unauthenticated attacker within the same network to execute arbitrary code, potentially gaining full control over the affected systems. The vulnerability arises from improper handling of SQL queries within the PatchBiz.dll file, which can be exploited to run malicious commands via the RecordGoodApp function.
Source: https://forums.ivanti.com/s/article/KB-Security-Advisory-EPM-May-2024?language=en_US
Read more
Read less
Patch faster and smarter
with vRx
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Trusted by 600+ customers:




Solution
Remediate faster with vRx
Patch Management
vRx automatically deploys patches across all systems, cutting patching time by 80%.
Scripting Engine
vRx’s scripting engine solves complex vulnerabilities, like log4j, with built-in or custom scripts.
Patchless Protection
vRx’s Patchless Protection secures vulnerable apps and reduces risk while maintaining functionality.

Automated Patching, Scripting, and more
Talk with our team to get a personal walkthrough
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.