Supplemental Direction V2: ED 24-01: Mitigate Ivanti Connect Secure and Ivanti Policy Secure Vulnerabilities
In effectCISA · CISA guidance · February 9, 2024
Summary
Replaced the first supplemental direction to Emergency Directive 24-01 and added a requirement for agencies running certain Ivanti versions to install updates released February 8, 2024 for a newly found authentication bypass flaw.
Replaces
What FedXchange has recorded
No changes recorded. The watch records a new document and any change in its status.
- Issuer
- Cybersecurity and Infrastructure Security Agency (CISA)
- Type
- CISA guidance
- Issued
- February 9, 2024
- Status
- In effect
Still in force, possibly with amendments.
Get new governance by email
A weekly email on Fridays, an alert on the day the watch finds something new, or both. Free.