Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-35078


An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionality or resources of the application without proper authentication.


Published

2023-07-25T07:15:10.897

Last Modified

2024-12-20T17:50:19.417

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-287
  • Type: Secondary
    CWE-287

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ivanti endpoint_manager_mobile < 11.8.1.1 Yes
Application ivanti endpoint_manager_mobile < 11.9.1.1 Yes
Application ivanti endpoint_manager_mobile < 11.10.0.2 Yes

References