Forwarded from Taiwan Computer Network Crisis Management and Coordination Center: Cybersecurity Alert TWCERTCC-200-202605-00000006
[Content Description]
Ivanti's Endpoint Manager (EPM) is a system specifically designed for device management, providing management and protection for Windows, macOS, and Linux devices.
Recently, Ivanti released a major cybersecurity vulnerability announcement (CVE-2026-8111, CVSS: 8.8). This is an SQL injection vulnerability that allows an authenticated remote attacker to execute remote code.
[Affected Platforms]
Ivanti Endpoint Manager 2024 SU6 and earlier versions
[Recommended Action]
Please update to Ivanti Endpoint Manager 2024 SU6 or later.