SEPTEMBER 25, 2026
Live Feed
Back to database
Case File

CVE-2026-7821

HIGH · CVSS 7.4 EPSS 0.51%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-05-07 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.4. It affects Ivanti. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.

CVE
CVE-2026-7821
Severity
HIGH
CVSS
7.4
EPSS
0.51%
Ivanti

Original NVD Description

Improper certificate validation in Ivanti EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0.1 allows a remote unauthenticated attacker to enroll a device belonging to a restricted set of unenrolled devices, leading to information disclosure about EPMM appliance and impacting on the integrity of the newly enrolled device identity.

Related CVEs

Other vulnerabilities affecting the same vendor(s)