CyberRota Analysis
AI-GeneratedIvanti Endpoint Manager Mobile versions prior to 12.10.0.0, 12.9.0.2, and 12.8.0.4 are vulnerable due to a missing authorization flaw that allows remote authenticated attackers to escalate their privileges to administrative levels. This high-severity vulnerability poses significant risks to organizations using these versions, as it could lead to unauthorized access and control over sensitive mobile management functions. Organizations utilizing affected Ivanti products should prioritize patching to mitigate potential exploitation.
Original NVD Description
Missing authorization in Ivanti Endpoint Manager Mobile before version 12.10.0.0, 12.9.0.2, and 12.8.0.4 allows a remote authenticated attacker to escalate their privileges to admin.
Related CVEs
Other vulnerabilities affecting the same vendor(s)