CyberRota Analysis
AI-GeneratedIvanti Endpoint Manager versions prior to 2024 SU7 are vulnerable to an out-of-bounds read, which can be exploited by remote unauthenticated attackers to crash the agent service. This vulnerability poses a significant risk as it can disrupt endpoint management operations and potentially lead to further exploitation. Organizations using affected versions should prioritize patching to mitigate the risk of service disruption and enhance overall security posture.
CVE
CVE-2026-18125
Severity
HIGH
CVSS
7.5
EPSS
0.78%
Ivanti
Original NVD Description
An out-of-bounds read in the Agent of Ivanti Endpoint Manager before version 2024 SU7 allows a remote unauthenticated attacker to crash an agent service.