296,172
Total vulnerabilities in the database
An External XML Entity (XXE) vulnerability in the provisioning web service of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenticated attacker to leak API secrets.
Software | From | Fixed in |
---|---|---|
ivanti / endpoint_manager | 2022-su1 | 2022-su1.x |
ivanti / endpoint_manager | - | 2022 |
ivanti / endpoint_manager | 2022 | 2022.x |
ivanti / endpoint_manager | 2022-su2 | 2022-su2.x |
ivanti / endpoint_manager | 2022-su3 | 2022-su3.x |
ivanti / endpoint_manager | 2022-su4 | 2022-su4.x |
ivanti / endpoint_manager | 2022-su5 | 2022-su5.x |