CVE-2026-8111

HIGHCVSS 8.82% EPSS

SQL injection in the web console of Ivanti Endpoint Manager before version 2024 SU6 allows a remote authenticated attacker to achieve remote code execution.

Published 2026-05-12 · last modified 2026-06-17

Affected products

VendorProduct
ivantiendpoint_manager

Full record at NVD ↗

← Get alerted the moment a CVE hits your gear — subscribe free

Ncerio by BeyondNets · data from NVD, CISA KEV, EPSS.