Vulnerabilities > Ivanti > Endpoint Manager Mobile > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-08-07 CVE-2024-34788 Improper Authentication vulnerability in Ivanti Endpoint Manager Mobile
An improper authentication vulnerability in web component of EPMM prior to 12.1.0.1 allows a remote malicious user to access potentially sensitive information
network
low complexity
ivanti CWE-287
6.5
2024-05-22 CVE-2024-22026 Unspecified vulnerability in Ivanti Endpoint Manager Mobile
A local privilege escalation vulnerability in EPMM before 12.1.0.0 allows an authenticated local user to bypass shell restriction and execute arbitrary commands on the appliance.
local
low complexity
ivanti
6.7