Und schon wieder kritische SicherheitslĂŒcken in Ivantiâs EPMM! Es hört nicht auf!
Und schon wieder kritische SicherheitslĂŒcken in Ivantiâs EPMM! Es hört nicht auf!
Ivanti Discloses High-Severity EPMM Flaw Exploited in Zero-Day Attacks
Ivanti has disclosed a high-severity flaw in its Endpoint Manager Mobile (EPMM) product, which has been exploited in limited zero-day attacks requiring admin authentication. To protect against this vulnerability, customers are advised to patch to Ivanti EPMM versions 12.6.1.1, 12.7.0.1, or 12.8.0.1.
#Critical #Vulnerabilities in #Ivanti #EPMM Exploited
Never ending Story?
https://unit42.paloaltonetworks.com/ivanti-cve-2026-1281-cve-2026-1340/
If you have Ivanti EPMM, please follow these instructions.
âTechnical Analysis updated with reliable Indicators of Compromise (IoCâs). Both in partnership with NCSC-NL.â
The Dutchies are at it again!đ€đłđ±
#EPMM #CVE20261281 #CVE20261340 #Ivanti #Cybersecurity #infosec #ioc
Only quickly popping on here from an otherwise very nice Fediverse vacation, because NCSC-NL has just put out an âassume-breachâ warning. Thatâs⊠kinda big.
#Ivanti #CVE20261281 #EPMM #MobileIron #NCSC_NL #Cybersecurity #infosec #IOC #NCSC
Source: Help Net Security â Ivanti a publiĂ© des correctifs provisoires pour deux vulnĂ©rabilitĂ©s critiques touchant Endpoint Manager Mobile (EPMM), dont lâune est activement exploitĂ©e et listĂ©e par la CISA. đš VulnĂ©rabilitĂ©s: CVE-2026-1281 (activement exploitĂ©e, ajoutĂ©e au catalogue KEV de la CISA) et CVE-2026-1340. đ§© Nature des failles: injection de code affectant les fonctionnalitĂ©s In-House Application Distribution et Android File Transfer Configuration dâEPMM. đŻ Impact potentiel: exĂ©cution de code Ă distance (RCE) par des attaquants non authentifiĂ©s sur des installations onâpremises dâEPMM vulnĂ©rables. đ ïž Mesure dâĂ©diteur: publication de correctifs temporaires (provisional patches) pour attĂ©nuer ces failles critiques. Type dâarticle: patch de sĂ©curitĂ© â objectif principal: annoncer des correctifs temporaires et alerter sur une exploitation active dâune vulnĂ©rabilitĂ© critique.
Krytyczne luki w Ivanti EPMM â pilna aktualizacja dla bezpieczeĆstwa MDM
Masz w firmie serwer MDM wystawiony do internetu? KtoĆ wĆaĆnie nauczyĆ siÄ nim sterowaÄ zdalnie â bez logowania.
Czytaj dalej:
https://pressmind.org/krytyczne-luki-w-ivanti-epmm-pilna-aktualizacja-dla-bezpieczenstwa-mdm/