logo

CISA Alerts on Ivanti Endpoint Manager Vulnerability Auth Bypass Exploited in the Wild

ID: b453db96-27d7-5aa2-976c-e577d4185e6d

STIX ID: report--b453db96-27d7-5aa2-976c-e577d4185e6d

Feed Name: GBHackers

Threat Score
75/100

Date Published: 2026-03-10

Date Updated: 2026-04-22

Author: Mayura Kathir

...
...

CISA has added CVE-2026-1603 — an authentication-bypass vulnerability in Ivanti Endpoint Manager (CWE-288) — to its Known Exploited Vulnerabilities catalog after observing active exploitation; the flaw could allow unauthenticated attackers to bypass authentication and retrieve stored credential data. CISA requires federal agencies to remediate under BOD 22-01 and advises all affected organizations to apply vendor mitigations, restrict external access, monitor for signs of compromise, and prioritize this KEV-listed vulnerability for patching.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.