CVE-2026-10523
EUVD-2026-3544109.06.2026, 16:16
An Authentication Bypass vulnerability (CWE-288) in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated attacker to create arbitrary administrative accounts and obtain full administrative accessEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ivanti | standalone_sentry | 𝑥 < 10.5.2 |
| ivanti | standalone_sentry | 10.6.0 ≤ 𝑥 < 10.6.2 |
| ivanti | standalone_sentry | 10.7.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration