CVE-2026-6973 is caused by improper input validation and allows remote attackers with administrative privileges to execute arbitrary code on vulnerable instances.
| Vendor | Product | Versions |
|---|---|---|
| ivanti | endpoint_manager_mobile | 12.8.0.0 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| ivanti | endpoint manager mobile | cert_advisory | 90% |
Updated CVSS score to 7.0 and noted that patch availability is now unspecified.
Added affected version 12.8.0.0 and included new tags related to CISA's mandate.
Updated description to include details about remote code execution and administrative privileges required for exploitation.
Updated description to include details about the vulnerability being actively exploited and confirmed the severity remains HIGH.
Updated description with details on targeted attacks and added new CWE and tags related to zero-day exploitation.
Updated exploit availability to true, marked as actively exploited, and set patch available to null.
Updated affected versions, changed severity to CRITICAL, marked as actively exploited, and added new CWE IDs.
Initial creation