AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-18125

HIGH · CVSS 7.5 EPSS 0.78%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

Ivanti Endpoint Manager versions prior to 2024 SU7 are vulnerable to an out-of-bounds read, which can be exploited by remote unauthenticated attackers to crash the agent service. This vulnerability poses a significant risk as it can disrupt endpoint management operations and potentially lead to further exploitation. Organizations using affected versions should prioritize patching to mitigate the risk of service disruption and enhance overall security posture.

CVE
CVE-2026-18125
Severity
HIGH
CVSS
7.5
EPSS
0.78%
Ivanti

Original NVD Description

An out-of-bounds read in the Agent of Ivanti Endpoint Manager before version 2024 SU7 allows a remote unauthenticated attacker to crash an agent service.