CVE-2020-13773: Ivanti Endpoint Manager
Medium severity, CVSS 5.4. EPSS: 1.3% chance of exploitation in the next 30 days.
Ivanti Endpoint Manager through 2020.1.1 allows XSS via /LDMS/frm_splitfrm.aspx, /LDMS/licensecheck.aspx, /LDMS/frm_splitcollapse.aspx, /LDMS/alert_log.aspx, /LDMS/ServerList.aspx, /LDMS/frm_coremainfrm.aspx, /LDMS/frm_findfrm.aspx, /LDMS/frm_taskfrm.aspx, and /LDMS/query_browsecomp.aspx.
Affected products
- Ivanti Endpoint Manager: up to and including 2020.1.1
Published 2020-11-16. Last modified 2026-06-17.