Endpoint Manager Mobile vulnerability

Missing authorization in Ivanti Endpoint Manager Mobile before version 12.10.0.0, 12.9.0.2, and 12.8.0.4 allows a remote authenticated attacker to escalate their privileges to admin.

Published 8 Sep 2026Updated 9 Sep 20261 sources
CVSS 8.8

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.