CISA Warning: Critical Ivanti EPMM Code Injection Vulnerability Under Active Attack
ID: 8bc43349-e6ec-5c19-a454-c58382cb491a
STIX ID: report--8bc43349-e6ec-5c19-a454-c58382cb491a
Feed Name: securityonline.info
CISA added a critical, actively exploited code-injection vulnerability (CVE-2026-1340, CVSS 9.8) in Ivanti Endpoint Manager Mobile to its KEV catalog; the flaw allows unauthenticated remote code execution on affected EPMM appliances. Ivanti released RPM security updates and an exploitation-detection RPM to scan for indicators, warns the RPM must be reinstalled after upgrades, and notes a permanent fix in the upcoming 12.8.0.0 release; federal agencies are required to remediate by April 11, 2026.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
