CVE-2026-10520
EUVD-2026-3544009.06.2026, 16:16
An OS Command Injection vulnerability in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated user to achieve root-level remote code execution
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ivanti | standalone_sentry | 𝑥 < 10.5.2 |
| ivanti | standalone_sentry | 10.6.0 ≤ 𝑥 < 10.6.2 |
| ivanti | standalone_sentry | 10.7.0 |
𝑥
= Vulnerable software versions