On March 26, 2024, a 3rd Party security research VulDB Coordination brought a public disclosure to our attention. This disclosure report includes DNS-340L, DNS-320L, DNS-327L, and DNS-325 network-attached storage models.
A heap overflow vulnerability in IPSec component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure allows an unauthenticated malicious user to send specially crafted requests in-order-to crash the service thereby causing a DoS attack.