Vulnerability Bulletins

CVE-2025-10918

   
Affected software IVANTI
 
Insecure default permissions in the agent of Ivanti Endpoint Manager before version 2024 SU4 allows a local authenticated attacker to write arbitrary files anywhere on disk

Link:

https://nvd.nist.gov/vuln/detail/CVE-2025-10918