8 Total CVEs
2 AI Analyzed
0 CISA KEV
0 Critical
All Vendors
Showing 1-8 of 8 CVEs
CVE-2025-9872
8.8
Endpoint Multiple Products

Insufficient filename validation in Ivanti Endpoint Manager before 2024 SU3 SR1 and 2022 SU8 SR2 allows a remote unauthenticated attacker to achieve r...

2025-09-09
CVE-2025-9713
Analyzed
8.8
Endpoint Multiple Products

Path traversal in Ivanti Endpoint Manager allows a remote unauthenticated attacker to achieve remote code execution

2025-10-13
CVE-2025-9712
8.8
Endpoint Multiple Products

Insufficient filename validation in Ivanti Endpoint Manager before 2024 SU3 SR1 and 2022 SU8 SR2 allows a remote unauthenticated attacker to achieve r...

2025-09-09
CVE-2025-6996
8.4
Endpoint Multiple Products

Improper use of encryption in the agent of Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update 1 allows a local authenticated...

2025-07-10
CVE-2025-6995
8.4
Endpoint Multiple Products

Improper use of encryption in the agent of Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update 1 allows a local authenticated...

2025-07-10
CVE-2025-13662
7.8
Endpoint Multiple Products

Improper verification of cryptographic signatures in the patch management component of Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a...

2025-12-10
CVE-2025-13659
8.8
Endpoint Multiple Products

Improper control of dynamically managed code resources in Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a remote, unauthenticated attac...

2025-12-10
CVE-2025-11622
Analyzed
7.8
Endpoint Multiple Products

Insecure deserialization in Ivanti Endpoint Manager allows a local authenticated attacker to escalate their privileges

2025-10-13