CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.4. It affects Ivanti. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2026-7821
Severity
HIGH
CVSS
7.4
EPSS
0.51%
Ivanti
Original NVD Description
Improper certificate validation in Ivanti EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0.1 allows a remote unauthenticated attacker to enroll a device belonging to a restricted set of unenrolled devices, leading to information disclosure about EPMM appliance and impacting on the integrity of the newly enrolled device identity.
Related CVEs
Other vulnerabilities affecting the same vendor(s)