Remote Code Execution Vulnerability in Ivanti EPM Management Console
CVE-2024-8191
What is CVE-2024-8191?
A vulnerability exists in the management console of Ivanti Endpoint Manager that allows remote unauthenticated attackers to exploit an SQL injection flaw. This vulnerability affects versions of Ivanti EPM released before the 2022 SU6 update as well as the September 2024 update. Successfully exploiting this flaw can enable attackers to execute arbitrary code on the affected systems, posing a serious risk to data integrity and system security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Endpoint Manager 2022 SU6
Endpoint Manager 2022 SU6
Endpoint Manager 2024 September Security Update
References
EPSS Score
40% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published