← Back to news

Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level Access

The Hacker News07/05/2026, 17:55
Read full article →

Summary

AI-Generated

Key Points:

  • CVE-2026-6973 is a high-severity vulnerability in Ivanti's Endpoint Manager Mobile (EPMM) that allows remote code execution (RCE) for authenticated users with administrative access.
  • The vulnerability affects EPMM versions prior to 12.6.1.1, 12.7.0.1, and 12.8.0.1, with limited exploitation reported; however, successful exploitation requires admin credentials.
  • It is recommended that organizations immediately apply the latest patches provided by Ivanti and ensure credential rotation to mitigate risks associated with this vulnerability.

Technical Details: CVE-2026-6973 has a CVSS score of 7.2 and stems from improper input validation, allowing an authenticated user to execute arbitrary code on the affected system.

MITRE ATT&CK Techniques: None mentioned

IOCs Mentioned: None mentioned

Join the discussion — sign up to comment, upvote, and save articles.

Discussion

or to comment
Loading...

Loading comments...

Join 5,000+ security professionals

Get access to curated threat intel, upvote articles, join discussions, and build your karma in the SOC community.