A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.
| Vendor | Product | Versions |
|---|---|---|
| ivanti | endpoint_manager_mobile | <= 12.5.0.0, 12.6.0.0, 12.7.0.0, 12.5.1.0, 12.6.1.0 |
Updated affected versions to include 12.6.0.0, 12.7.0.0, 12.5.1.0, and 12.6.1.0, and set patchAvailable to null.
Initial creation