this post was submitted on 25 Jul 2023
4 points (100.0% liked)

Security Operations

578 readers
1 users here now

A place for all things Cyber Security, from questions, rants, and stories, to the latest attacks, vulnerabilities, and zero days.

founded 2 years ago
MODERATORS
L3s
 

CVE-2023-35078 - Remote Unauthenticated API Access Vulnerability - A vulnerability has been discovered in Ivanti Endpoint Manager Mobile (EPMM), formerly known as MobileIron Core. This vulnerabilit...::<span style="font-size: 11pt;"><span style="line-height: 107%;"><span style="font-family: Calibri,sans-serif;"><span style="font-family: "Arial",sans-serif;">A vulnerability has been discovered in Ivanti Endpoint Manager Mobile (EPMM), formerly known as MobileIron Core. This vulnerability impacts all supported versions – Version 11.4 releases 11.10, 11.9 and 11.8. Older versions/releases are also at risk.<span style="font-family: "Arial",sans-serif;"><span style="color: black;">If exploited, this vulnerability enables an unauthorized, remote (internet-facing) actor to potentially access users’ personally identifiable information and make limited changes to the server.<span style="font-size: 11pt;"><span style="line-height: 107%;"><span style="font-family: Calibri,sans-serif;"><span style="font-family: "Arial",sans-serif;"><span style="color: black;">We have received information from a credible source indicating exploitation has occurred.<span style="font-family: "Arial",sans-serif;"><span style="color: black;"> We continue to work with our customers and partners to investigate this situation.  <span style="font-family: "Arial",sans-serif;"><span style="color: black;">We are only aware of a very limited number of customers that have been impacted. We are actively working with our customers and partners to investigate this situation.    <span style="font-size: 11pt;"><span style="line-height: 107%;"><span style="font-family: Calibri,sans-serif;">   

no comments (yet)
sorted by: hot top controversial new old
there doesn't seem to be anything here