vendor

ivanti

15 thingsrelated by NVD
Severity
Exploited

Its products

neurons for itsm 8 endpoint manager 3 connect secure 2 policy secure 2 endpoint manager cloud services appliance 1 endpoint manager mobile 1 neurons for zero-trust access 1

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to…
CVE-2026-12745
Severity critical
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to…
CVE-2026-12744
Severity critical
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to…
CVE-2026-12651
Severity high
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to…
CVE-2026-12650
Severity high
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to…
CVE-2026-12648
Severity high
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary…
CVE-2026-12647
Severity high
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary…
CVE-2026-12646
Severity high
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary…
CVE-2026-12645
Severity high
SQL injection in Ivanti Endpoint Manager before version 2024 SU5 allows a remote authenticated attacker to read arbitrary data from the…
CVE-2025-62386
Severity medium
OS command injection in the admin panel of Ivanti EPMM before version 12.6.0.2, 12.5.0.4, and 12.4.0.4 allows a remote authenticated…
CVE-2025-10242
Severity high
Insufficient filename validation in Ivanti Endpoint Manager before 2024 SU3 SR1 and 2022 SU8 SR2 allows a remote unauthenticated attacker…
CVE-2025-9872
Severity high
Path traversal in Ivanti Endpoint Manager before version 2024 SU4 allows a remote unauthenticated attacker to achieve remote code…
CVE-2025-9713
Severity high
Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability
CVE-2025-0282
Severity critical Exploited yes
Ivanti Cloud Services Appliance (CSA) SQL Injection Vulnerability
CVE-2024-9379
Severity high Exploited yes
Ivanti Connect Secure and Policy Secure Authentication Bypass Vulnerability
CVE-2023-46805
Severity high Exploited yes