References https://rivers.chaitin.cn/blog/cqk85a10lnec5jjug450 https://hub.ivanti.com/s/article/Security-Advisory-EPM-November-2024-for-EPM-2024-and-EPM-2022 https://xxhzx.web.hebust.edu.cn/wlaq/8c3e8eaea2124031938f9d4e9be5600c.htm https://www.nics.nat.gov.tw/core_business/information-security_information_sharing/Vulnerability_Alert_Announcements/4c9c6e4a-33a8-4723-95b1-30b8a02b4d71/ https://www.tenablecloud.cn/plugins/was/114433 https://www.dreamjtech.com/26526/ https://github.com/angel1374/2024-POC/blob/main/Ivanti-EPM%E5%AD%98%E5%9C%A8SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E(CVE-2024-29824).md https://www.cgu.edu.tw/cgus/Subject/Detail/77988?nodeId=19003 https://research.splunk.com/web/e20564ca-c86c-4e30-acdb-a8486673426f/ https://www.cybersecuritydive.com/news/ivanti-endpoint-manager-hackers-attack/728814/ https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-ivanti-endpoint-manager-could-allow-for-authentication-bypass_2026-013 https://www.ivanti.com/blog/security-update-for-ivanti-epm https://www.fortiguard.com/encyclopedia/ips/56195 https://op-c.net/blog/ivanti-epm-sql-injection-flaw-allows-remote-code-execution/ https://app.opencve.io/cve/?product=endpoint_manager&vendor=ivanti https://horizon3.ai/attack-research/attack-blogs/cve-2024-29824-deep-dive-ivanti-epm-sql-injection-remote-code-execution-vulnerability/ https://ccb.belgium.be/advisories/warning-ivanti-endpoint-manager-critical-vulnerability https://app.opencve.io/cve/?page=5&product=endpoint_manager&vendor=ivanti https://www.isssource.com/ivanti-patches-updates-endpoint-manager/ https://www.linkedin.com/posts/bulwark-black-llc_cisa-warns-of-ivanti-endpoint-manager-authentication-activity-7437515922057146368-J_bn https://cve.komodosec.com/cve-list?search=unspecified&year=&has_exploit=&results_per_page=15&sort=exploit&order=ascending&page_number=20 https://thehackernews.com/search/label/Ivanti https://notifications.qualys.com/api/2025/01/30/web-application-detections-published-in-january-2025 https://app.opencve.io/cve/?page=2&vendor=ivanti https://feedly.com/cve/CVE-2024-8191 https://cyberleveling.com/blog/patch-tuesday-may-2026 https://app.crowdsec.net/cti/54.170.222.236
Related VulnerabilitiesPoCCVE-2026-1281: Ivanti EPMM <=12.7.0.0 - Unauthenticated Code InjectionPoCCVE-2026-10520: Ivanti Sentry - OS Command InjectionIvanti Sentry存在操作系统命令注入漏洞(CVE-2026-10520)Ivanti Sentry /mics/api/v2/sentry/mics-config/handleMessage 命令执行漏洞(CVE-2026-10520)Ivanti EPMM /mifs/rs/api/v2/featureusage 命令执行漏洞(CVE-2025-4427)PoCIvanti Endpoint Manager /RemoteControlAuth/api/Auth 权限绕过漏洞(CVE-2026-1603)Ivanti Endpoint Manager 权限管理不当漏洞PoCCVE-2026-1603: Ivanti Endpoint Manager - Authentication BypassIvanti Endpoint Manager Mobile /mifs/c/appstore/fob/3/5/sha256 命令执行漏洞(CVE-2026-1281/CVE-2026-1340)Ivanti Endpoint Manager Mobile 未授权 代码注入漏洞Ivanti多个产品跨站请求伪造漏洞(CVE-2025-8711)(CVE-2025-8712)Ivanti产品权限验证不足漏洞