logo

Ivanti Patches Two Zero-Days in Mobile Manager After Attackers Exploit Vulnerable Systems

ID: 1692fb3f-6661-51a6-ad77-0aa945f6bb7a

STIX ID: report--1692fb3f-6661-51a6-ad77-0aa945f6bb7a

Feed Name: The Cyber Express

Threat Score
90/100

Date Published: 2026-01-30

Date Updated: 2026-04-23

Author: Mihir Bagwe

...
...

Ivanti disclosed two critical code-injection zero-day vulnerabilities in on-premises Endpoint Manager Mobile (CVE-2026-1281 and CVE-2026-1340) that allow unauthenticated remote code execution; limited exploitation has been observed and CISA added CVE-2026-1281 to its Known Exploited Vulnerabilities catalog. Ivanti released RPM-based mitigations and recommends restoring from known-good backups or rebuilding compromised appliances, rotating credentials and certificates, and reviewing Sentry integrations for potential lateral movement; organizations are strongly urged to apply mitigations and patch immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.