296,172
Total vulnerabilities in the database
An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution.
Software | From | Fixed in |
---|---|---|
ivanti / endpoint_manager | 2022-su1 | 2022-su1.x |
ivanti / endpoint_manager | - | 2022 |
ivanti / endpoint_manager | 2022 | 2022.x |
ivanti / endpoint_manager | 2022-su2 | 2022-su2.x |
ivanti / endpoint_manager | 2022-su3 | 2022-su3.x |
ivanti / endpoint_manager | 2022-su4 | 2022-su4.x |
ivanti / endpoint_manager | 2022-su5 | 2022-su5.x |
ivanti / endpoint_manager | 2024 | 2024.x |