logo

Warning: Remote Code Execution in Ivanti EPMM Endpoint Manager Mobile, Patch Immediately!

ID: 26968416-6496-535c-a765-8399148922dd

STIX ID: report--26968416-6496-535c-a765-8399148922dd

Feed Name: CCB Advisories Feed

Threat Score
90/100

Date Published: 2026-02-05

Date Updated: 2026-07-24

...
...

**Ivanti EPMM critical RCEs (CVE-2026-1281 & CVE-2026-1340):** Two code-injection vulnerabilities in Ivanti Endpoint Manager Mobile (<=12.7.0.0) enable unauthenticated remote code execution; both are CVSS 9.8 and have been confirmed as actively exploited with observed backdoors and log erasure, so organizations must patch, assume compromise, and perform forensic investigations and enhanced monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.