Vulnerabilities
Vulnerable Software
Ivanti:  Security Vulnerabilities
Missing authorization in Ivanti Endpoint Manager Mobile before version 12.10.0.0, 12.9.0.2, and 12.8.0.4 allows a remote authenticated attacker to escalate their privileges to admin.
CVSS Score
8.8
EPSS Score
0.01
Published
2026-09-08
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.
CVSS Score
9.8
EPSS Score
0.023
Published
2026-09-08
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.
CVSS Score
9.8
EPSS Score
0.022
Published
2026-09-08
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVSS Score
9.9
EPSS Score
0.013
Published
2026-09-08
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVSS Score
9.9
EPSS Score
0.012
Published
2026-09-08
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVSS Score
9.9
EPSS Score
0.012
Published
2026-09-08
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVSS Score
8.8
EPSS Score
0.015
Published
2026-09-08
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVSS Score
9.9
EPSS Score
0.016
Published
2026-09-08
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVSS Score
8.8
EPSS Score
0.015
Published
2026-09-08
Path traversal in Ivanti  Xtraction before version 2026.2.1 allows a remote authenticated attacker to read arbitrary files outside the web root.
CVSS Score
7.7
EPSS Score
0.012
Published
2026-07-14


Contact Us

Shodan ® - All rights reserved