Ivanti Neurons for ITSM 在 2026.2 版本之前存在授权缺失(Missing Authorization)漏洞,允许远程已认证攻击者在服务器上执行任意代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Ivanti | Ivanti Neurons for ITSM | 2026.2 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Ivanti | Ivanti Neurons for ITSM | 2026.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-12645 | 9.9 CRITICAL | Ivanti Neurons for ITSM 2026.2前认证缺失 |
| CVE-2026-12650 | 9.9 CRITICAL | Ivanti Neurons 2026.2前反序列化RCE |
| CVE-2026-12647 | 9.9 CRITICAL | Ivanti Neurons for ITSM 2026.2前授权缺失 |
| CVE-2026-12745 | 9.8 CRITICAL | Ivanti Neurons 2026.2前不安全反序列化漏洞 |
| CVE-2026-12744 | 9.8 CRITICAL | Ivanti Neurons 2026.2 前不安全反序列化 RCE |
| CVE-2026-18851 | 8.8 HIGH | Ivanti Endpoint Manager 12.10前授权缺失提权 |
| CVE-2026-12651 | 8.8 HIGH | Ivanti Neurons for ITSM 2026.2前反序列化致远程代码执行 |
| CVE-2026-12648 | 8.8 HIGH | Ivanti Neurons for ITSM 2026.2 前反序列化漏洞 |
| CVE-2026-83527 | 8.1 HIGH | Sentry R10.8.2前未认证认证绕过漏洞 |
No comments yet