An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an authenticated attacker within the same network to execute arbitrary code.
2024-05-31T18:15:12.107
2024-11-21T09:08:25.467
Modified
CVSSv3.1: 8.0 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ivanti | endpoint_manager | < 2022 | Yes |
Application | ivanti | endpoint_manager | 2022 | Yes |
Application | ivanti | endpoint_manager | 2022 | Yes |
Application | ivanti | endpoint_manager | 2022 | Yes |
Application | ivanti | endpoint_manager | 2022 | Yes |
Application | ivanti | endpoint_manager | 2022 | Yes |
Application | ivanti | endpoint_manager | 2022 | Yes |