logo

CISA gives feds four days to patch Ivanti flaw exploited as zero-day

ID: 1a6c7cde-71d5-59b2-8742-cfe74bda873b

STIX ID: report--1a6c7cde-71d5-59b2-8742-cfe74bda873b

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2026-05-08

Date Updated: 2026-05-08

Author: Sergiu Gatlan

...
...

CISA ordered U.S. federal agencies to patch a high-severity remote code execution vulnerability (CVE-2026-6973) in Ivanti Endpoint Manager Mobile (EPMM), which has been exploited in limited zero-day attacks; Ivanti released patched EPMM versions (12.6.1.1, 12.7.0.1, 12.8.0.1) and advised reviewing/rotating admin credentials. Shadowserver is tracking over 800 exposed EPMM appliances online, and Ivanti noted the issue affects on-prem EPMM only and is not present in its cloud services.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.