HIGHCVSS 7.81% EPSS
Improper verification of cryptographic signatures in the patch management component of Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a remote unauthenticated attacker to execute arbitrary code. User Interaction is required.
Published 2025-12-09 · last modified 2026-06-17
| Vendor | Product |
|---|---|
| ivanti | endpoint_manager |
Ncerio by BeyondNets · data from NVD, CISA KEV, EPSS.