Posting Date: 2026/05/15
【Vulnerability Alert】High-Risk Security Vulnerability in Ivanti Endpoint Manager (CVE-2026-8111)
- Subject: 【Vulnerability Alert】High-Risk Security Vulnerability in Ivanti Endpoint Manager (CVE-2026-8111)
- Description:
- Forwarded from Taiwan Computer Emergency Response Team / Coordination Center Security Advisory TWCERTCC-200-202605-00000006
- Ivanti Endpoint Manager (EPM) is a system specifically designed for device management, providing management and protection for Windows, macOS, and Linux devices.
- Ivanti recently released a critical security vulnerability advisory (CVE-2026-8111, CVSS: 8.8). This is an SQL injection vulnerability that allows authenticated remote attackers to achieve remote code execution.
- Affected Platforms:
- Ivanti Endpoint Manager versions prior to 2024 SU6 (not inclusive)
- Recommended Actions:
- Please update to Ivanti Endpoint Manager 2024 SU6 (inclusive) or later versions
Computer and Communication Center
Network Systems Division