EN

high

Ivanti Endpoint Manager Mobile: Obtaining administrator privileges possible

CERT-Bund (BSI) reports one vulnerability in Ivanti Endpoint Manager Mobile with severity high. The stated impact is obtaining administrator privileges. The full description, affected versions and recommended action are available from CERT-Bund (BSI).

Attack vector
over the network
Access needed
yes, an account is needed

What this means for you

An attacker can obtain administrator privileges. After the update, the logs are worth a look: anyone who used the flaw beforehand usually leaves newly created accounts behind.

Original source

CERT-Bund (BSI)

Contact

Reputation takes years. Destruction takes seconds.

Talk to us before somebody else does. The first conversation is free and we reply the same business day.