Skip to content

Supplemental Direction V2: ED 24-01: Mitigate Ivanti Connect Secure and Ivanti Policy Secure Vulnerabilities

In effectCISA · CISA guidance · February 9, 2024

Summary

Replaced the first supplemental direction to Emergency Directive 24-01 and added a requirement for agencies running certain Ivanti versions to install updates released February 8, 2024 for a newly found authentication bypass flaw.

Read it on www.cisa.gov

What FedXchange has recorded

No changes recorded. The watch records a new document and any change in its status.

Issuer
Cybersecurity and Infrastructure Security Agency (CISA)
Type
CISA guidance
Issued
February 9, 2024
Status
In effect

Still in force, possibly with amendments.

Get new governance by email

A weekly email on Fridays, an alert on the day the watch finds something new, or both. Free.

Send me

We use your address only to send what you choose, and every email has a one-click unsubscribe. Read the privacy notice.