Vulnerability Bulletins |
CVE-2025-10573 |
|
| Affected software | IVANTI |
| Stored XSS in Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a remote unauthenticated attacker to execute arbitrary JavaScript in the context of an administrator session. User interaction is required. | |
Link: |
|
| https://nvd.nist.gov/vuln/detail/CVE-2025-10573 | |






