OS command injection in Ivanti Endpoint Manager Mobile (EPMM) before version 12.5.0.2 allows a remote authenticated attacker with high privileges to achieve remote code execution
| Software | From | Fixed in |
|---|---|---|
| ivanti / endpoint_manager_mobile | 12.4.0.0 | 12.4.0.3 |
| ivanti / endpoint_manager_mobile | 12.5.0.0 | 12.5.0.2 |
| ivanti / endpoint_manager_mobile | - | 12.3.0.3 |