CVE-2024-7612: Ivanti Endpoint Manager Mobile

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Insecure permissions in Ivanti EPMM before 12.1.0.4 allow a local authenticated attacker to modify sensitive application components.

Affected products

  • Ivanti Endpoint Manager Mobile: before 12.0.0.5 (fixed in 12.0.0.5); from 12.1.0.0, before 12.1.0.4 (fixed in 12.1.0.4)

Published 2024-10-08. Last modified 2026-06-17.