CVE-2023-35084: Ivanti Endpoint Manager
Critical severity, CVSS 9.8. EPSS: 2.8% chance of exploitation in the next 30 days.
Unsafe Deserialization of User Input could lead to Execution of Unauthorized Operations in Ivanti Endpoint Manager 2022 su3 and all previous versions, which could allow an attacker to execute commands remotely.
Affected products
- Ivanti Endpoint Manager: before 2022 (fixed in 2022); version 2022 only
Published 2023-10-18. Last modified 2026-06-17.