CVE-2018-6316: Ivanti Endpoint Security
High severity, CVSS 7.5. EPSS: 1.9% chance of exploitation in the next 30 days.
Ivanti Endpoint Security (formerly HEAT Endpoint Management and Security Suite) 8.5 Update 1 and earlier allows an authenticated user with low privileges and access to the local network to bypass application whitelisting when using the Application Control module on Ivanti Endpoint Security in lockdown mode.
Affected products
- Ivanti Endpoint Security: up to and including 8.5; version 8.5 only
Published 2018-02-15. Last modified 2026-06-17.