Vulnerability Bulletins

CVE-2025-13662

   
Affected software IVANTI
 
Improper verification of cryptographic signatures in the patch management component of Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a remote unauthenticated attacker to execute arbitrary code. User Interaction is required.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2025-13662