Ivanti Endpoint Manager(EPM)是美国Ivanti公司的一套端点安全管理器。 Ivanti Endpoint Manager 2024 SU1之前版本和2022 SU7之前版本存在跨站脚本漏洞,该漏洞源于反射型跨站脚本,允许远程未认证攻击者获取管理员权限,需用户交互。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Ivanti | Endpoint Manager | 2024 SU1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-22458 | 7.8 HIGH | Ivanti Endpoint Manager 代码问题漏洞 |
| CVE-2025-22461 | 7.2 HIGH | Ivanti Endpoint Manager SQL注入漏洞 |
| CVE-2025-22464 | 6.1 MEDIUM | Ivanti Endpoint Manager 安全漏洞 |
| CVE-2025-22465 | 6.1 MEDIUM | Ivanti Endpoint Manager 跨站脚本漏洞 |
| CVE-2025-22459 | 4.8 MEDIUM | Ivanti Endpoint Manager 安全漏洞 |
No comments yet