← Back to browse · API

CVE-2025-9713

Severity
HIGH
CVSS
8.8
EPSS
0.14805
Risk score
40.38
CISA KEV
No
PoC
No
Published
2025-10-13
Modified
2026-02-26
First seen
2026-08-07
Aliases
EUVD-2025-34088, GHSA-4VV9-J5H4-6C9W
Products
Ivanti:Endpoint Manager patch: 2024 SU4
Sources
euvd EUVD-2025-34088

Description

Path traversal in Ivanti Endpoint Manager before version 2024 SU4 allows a remote unauthenticated attacker to achieve remote code execution. User interaction is required.

References