Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Ivanti — Vulnerabilities & Security Advisories 390

Browse all 390 CVE security advisories affecting Ivanti. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Ivanti provides enterprise IT service management and endpoint management solutions, primarily facilitating workflow automation and device control for large organizations. The company’s software portfolio has historically been a significant target for attackers, resulting in a substantial record of 358 Common Vulnerabilities and Exposures. These security flaws frequently involve critical classes such as remote code execution, cross-site scripting, and privilege escalation, often stemming from complex integrations within its service management platforms. A notable incident occurred in 2021 when the SambaCry vulnerability allowed unauthenticated remote code execution, compromising thousands of systems globally. This event underscored the risks associated with legacy codebases and insufficient patch management cycles. Consequently, Ivanti has faced intense scrutiny regarding its development practices and incident response capabilities, prompting industry-wide recommendations for immediate isolation and rigorous vulnerability scanning of affected endpoints to mitigate potential data breaches and operational disruptions.

CVE ID Title CVSS Severity Published
CVE-2026-6973 Ivanti EPMM 输入验证错误漏洞 — Endpoint Manager Mobile CWE-20 7.2 High 2026-05-07
CVE-2026-5786 Ivanti EPMM 访问控制错误漏洞 — Endpoint Manager Mobile CWE-284 8.8 High 2026-05-07
CVE-2026-4914 Ivanti Neurons for ITSM 跨站脚本漏洞 — Neurons for ITSM (On-Premise) CWE-79 5.4 Medium 2026-04-14
CVE-2026-4913 Ivanti Neurons for ITSM 安全漏洞 — Neurons for ITSM (On-Premise) CWE-424 5.7 Medium 2026-04-14
CVE-2026-3483 Ivanti Desktop and Server Management 安全漏洞 — Desktop and Server Management CWE-749 7.8 High 2026-03-10
CVE-2026-1603 Ivanti Endpoint Manager 安全漏洞 — Endpoint Manager CWE-288 8.6 High 2026-02-10
CVE-2026-1602 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2026-02-10
CVE-2026-1340 Ivanti Endpoint Manager Mobile 代码注入漏洞 — Endpoint Manager Mobile CWE-94 9.8 Critical 2026-01-29
CVE-2026-1281 Ivanti Endpoint Manager Mobile 代码注入漏洞 — Endpoint Manager Mobile CWE-94 9.8 Critical 2026-01-29
CVE-2025-13662 Ivanti Endpoint Manager 数据伪造问题漏洞 — Endpoint Manager CWE-347 7.8 High 2025-12-09
CVE-2025-13661 Ivanti Endpoint Manager 路径遍历漏洞 — Endpoint Manager CWE-22 7.1 High 2025-12-09
CVE-2025-13659 Ivanti Endpoint Manager 安全漏洞 — Endpoint Manager CWE-913 8.8 High 2025-12-09
CVE-2025-10573 Ivanti Endpoint Manager 跨站脚本漏洞 — Endpoint Manager CWE-79 9.6 Critical 2025-12-09
CVE-2025-10918 Ivanti Endpoint Manager 安全漏洞 — Endpoint Manager CWE-276 7.1 High 2025-11-11
CVE-2025-10986 Ivanti EPMM 路径遍历漏洞 — Endpoint Manager Mobile CWE-22 4.7 Medium 2025-10-14
CVE-2025-10985 Ivanti EPMM 操作系统命令注入漏洞 — Endpoint Manager Mobile CWE-78 7.2 High 2025-10-14
CVE-2025-10243 Ivanti EPMM 操作系统命令注入漏洞 — Endpoint Manager Mobile CWE-78 7.2 High 2025-10-14
CVE-2025-10242 Ivanti EPMM 操作系统命令注入漏洞 — Endpoint Manager Mobile CWE-78 7.2 High 2025-10-14
CVE-2025-62384 Ivanti Endpoint Manager(EPM) SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62386 Ivanti Endpoint Manager(EPM) SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62383 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62391 Ivanti Endpoint Manager(EPM) SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62385 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62387 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62388 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62389 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62390 Ivanti Endpoint Manager(EPM) SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-62392 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-11623 Ivanti Endpoint Manager SQL注入漏洞 — Endpoint Manager CWE-89 6.5 Medium 2025-10-13
CVE-2025-9713 Ivanti Endpoint Manager 路径遍历漏洞 — Endpoint Manager CWE-22 8.8 High 2025-10-13

This page lists every published CVE security advisory associated with Ivanti. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.