CVE Database
/

CVE-2023-39335

Back to search

CVE-2023-39335

Published: Nov 14, 2023

Modified: Aug 29, 2024

PUBLISHED

Description

A security vulnerability has been identified in EPMM Versions 11.10, 11.9 and 11.8 and older allowing an unauthenticated threat actor to impersonate any existing user during the device enrollment process. This issue poses a significant security risk, as it enables unauthorized access and potential misuse of user accounts and resources.

VendorProductVersions

Ivanti

EPMM

affected
11.10.0.0 - <= 11.10.0.0
affected
11.9.0.0 - <= 11.9.0.0
affected
11.8.0.0 - <= 11.8.0.0

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now