TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

CIS Advisories

Multiple Vulnerabilities in Ivanti Endpoint Manager Mobile Could Allow for Remote Code Execution

2026-01-30 · Read original ↗

ATT&CK techniques detected

1 predictions
T1190Exploit Public-Facing Application
44%
"1. 0 and prior - epmm version 12. 5. 0. 0 and prior - epmm version 12. 6. 0. 0 and prior - epmm version 12. 7. 0. 0 and prior risk : government : businesses : home users : technical summary : multiple vulnerabilities have been discovered in ivanti endpoint manager mobile which co…"

Summary

Multiple vulnerabilities have been discovered in Ivanti Endpoint Manager Mobile which could allow for remote code execution. Ivanti Endpoint Manager Mobile is a mobile management software engine that enables IT to set policies for mobile devices, applications and content. Successful exploitation of these vulnerabilities could allow for remote code execution in the context of the user. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; make configuration changes on devices; or create new accounts with full user rights.