Security News > 2025 > March > CISA tags critical Ivanti EPM flaws as actively exploited in attacks

2025-03-11 13:01
CISA warned U.S. federal agencies to secure their networks against attacks exploiting three critical vulnerabilities affecting Ivanti Endpoint Manager (EPM) appliances. [...]
News URL
Related news
- CISA Warns of CentreStack's Hard-Coded MachineKey Vulnerability Enabling RCE Attacks (source)
- CISA extends funding to ensure 'no lapse in critical CVE services' (source)
- CISA tags SonicWall VPN flaw as actively exploited in attacks (source)
- DslogdRAT Malware Deployed via Ivanti ICS Zero-Day CVE-2025-0282 in Japan Attacks (source)
- SAP fixes critical Netweaver flaw exploited in attacks (source)
- More Ivanti attacks may be on horizon, say experts who are seeing 9x surge in endpoint scans (source)
- CISA tags Broadcom Fabric OS, CommVault flaws as exploited in attacks (source)
- Critical Langflow Flaw Added to CISA KEV List Amid Ongoing Exploitation Evidence (source)
- CISA warns of hackers targeting critical oil infrastructure (source)
- Ivanti warns of critical Neurons for ITSM auth bypass flaw (source)