Vulnerability in Ivanti Endpoint Manager Mobile Could Allow for Unauthorized Access to API Paths
.fusion-imageframe.imageframe-1 img{aspect-ratio:21 / 9;} I. Targeted Entities Ivanti Users II. Introduction Norwegian authorities recently revealed a critical zero-day vulnerability in Ivanti Endpoint Manager Mobile (EPMM), posing a significant security threat. The flaw enables unauthenticated remote attackers to bypass authentication and gain access to the server’s API, potentially leading to data theft and unauthorized system modifications. …