Exploited in the Wild: Critical Ivanti EPMM RCE Flaws (CVSS 9.8) Under Attack
ID: 2a2757ed-9c86-5517-925d-97ecbe69a5fc
STIX ID: report--2a2757ed-9c86-5517-925d-97ecbe69a5fc
Feed Name: securityonline.info
Ivanti has issued an urgent security advisory that two critical unauthenticated RCE vulnerabilities (CVE-2026-1281 and CVE-2026-1340, CVSS 9.8) in Endpoint Manager Mobile (EPMM) are being actively exploited against a limited number of customers; successful exploitation could fully compromise mobile device management infrastructure (allowing malicious app deployment, device wipes, or data theft). Ivanti indicates the flaws are specific to EPMM, recommends immediate patching and revocation/regeneration of affected certificates, and notes the difficulty but potential risk around decrypting private keys stored in the Core database.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
