CVE-2023-35082Patch(ivanti / endpoint_manager_mobile)

MEDIUMCVSS 9.8 · CRITICALCISA KEV

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch ivanti endpoint_manager_mobile systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

An authentication bypass vulnerability in Ivanti EPMM 11.10 and older, allows unauthorized users to access restricted functionality or resources of the application without proper authentication. This vulnerability is unique to CVE-2023-35078 announced earlier.

4.0/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2024-02-08. Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Weakness type (CWE)
CWE-287

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • endpoint_manager_mobile

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-05-08); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
endpoint_manager_mobile

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-05-08: 1Mentions · 2026-07-14: 1Active Exploitation · 2026-05-08: 1Patch / Workaround · 2026-05-08: 1Technical Details · 2026-05-08: 1Technical Details · 2026-07-14: 105-0807-14
Signal classification2 categories
Patch
150.0%
Disclosure
150.0%
Referenced assets1 URL
Classification over time
DateTotalLabels
2026-05-081
Patch1
2026-07-141
Disclosure1
Full discourse2 posts
  • ro0TCr4k@ro0TCr4k
    Disclosure

    Ivanti EPMM auth bypass (CVE-2023-35082) is critical. CVSS 9.8. If you're managing enterprise mobile fleets, detecting this bypass is your immediate priority. We've already integrated the exploit pattern.

    Post summary

    The message highlights a critical authentication bypass in Ivanti EPMM (CVE‑2023‑35082) with a CVSS of 9.8, urging immediate detection and noting that the exploit pattern has been integrated.

    00000136
    338 followersView on X
  • Security Arsenal, LLC@SecurityAr58409
    Patch

    🔒 #CyberSecurity CVE-2023-35082: Ivanti EPMM Exploitation — Detection and Hardening Guide "Active exploitation of Ivanti EPMM (CVE-2023-35082) allows unauthenticated RCE. Immediate patching…" 🔗 https://securityarsenal.com/blog/cve-2023-35082-ivanti-epmm-exploitation-detection-and-hardening-guide #CyberSecurity #ThreatIntel #cve #zeroday #patchtuesday

    Post summary

    The guide warns of active exploitation of Ivanti EPMM CVE-2023‑35082, stresses immediate patching, and offers hardening instructions to mitigate unauthenticated remote code execution.

    0000080
    15 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appivantiendpoint_manager_mobile---

Explore more