CVE-2024-36132: Ivanti Endpoint Manager Mobile

High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.

Insufficient verification of authentication controls in EPMM prior to 12.1.0.1 allows a remote attacker to bypass authentication and access sensitive resources.

Affected products

  • Ivanti Endpoint Manager Mobile: before 12.1.0.1 (fixed in 12.1.0.1)

Published 2024-08-07. Last modified 2026-06-17.