MEDIUM SeverityCVSS 3.16.5CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVE-2026-8109
Last updated May 12, 2026 · Published May 12, 2026
Description
An exposed dangerous method on the Core Server of Ivanti Endpoint Manager before version 2024 SU6 allows a remote authenticated attacker to leak access credentials.
Affected products
1 listed- ivanti:Endpoint Manager
Mappings
CWE
CWE-749
CAPEC
CAPEC-212
CVE® content © MITRE Corporation. Licensed under the CVE Terms of Use. Terms
