CVE-2026-8109
MEDIUM
6,5
Source: 3c1d8aa1-5a33-4ea4-8992-aadd6440af75
Attack Vector: network
Attack Complexity: low
Privileges Required: low
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: none
Availability: none
Description
AI Translation Available
An exposed dangerous method on the Core Server of Ivanti Endpoint Manager before version 2024 SU6 allows a remote authenticated attacker to leak access credentials.
749
Exposed Dangerous Method or Function
IncompleteCommon Consequences
Security Scopes Affected:
Integrity
Confidentiality
Availability
Access Control
Other
Potential Impacts:
Gain Privileges Or Assume Identity
Read Application Data
Modify Application Data
Execute Unauthorized Code Or Commands
Other
Applicable Platforms
All platforms may be affected
https://hub.ivanti.com/s/article/Security-Advisory-Ivanti-Endpoint-Manager-EPM-…