CVE-2025-13659
EUVD-2025-20228709.12.2025, 16:17
Improper control of dynamically managed code resources in Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a remote, unauthenticated attacker to write arbitrary files on the server, potentially leading to remote code execution. User interaction is required.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ivanti | endpoint_manager | 𝑥 < 2024 |
𝑥
= Vulnerable software versions