Improper Resource Management in Ivanti Endpoint Manager Exposes File Writing Vulnerability
CVE-2025-13659
8.8HIGH
What is CVE-2025-13659?
A significant vulnerability in Ivanti Endpoint Manager allows attackers to exploit improper management of dynamically allocated code resources. This flaw enables remote, unauthenticated attackers to write arbitrary files on the server, which creates a pathway for potential execution of arbitrary code. While user interaction is needed to activate this threat, it presents a serious security risk that must be remedied to protect sensitive information and maintain system integrity.
Affected Version(s)
Endpoint Manager 2024 SU4 SR1