← Back to browse · API

CVE-2026-10523

Severity
CRITICAL
CVSS
9.9
EPSS
0.5187
Risk score
57.75
CISA KEV
No
PoC
No
Published
2026-06-09
Modified
2026-06-10
First seen
2026-08-05
Aliases
EUVD-2026-35441, GHSA-8FC8-RW5J-9RCQ
Products
Sentry:sentry patch: R10.5.2, Sentry:sentry patch: R10.6.2, Sentry:sentry patch: R10.7.1, ivanti:standalone_sentry
Sources
nvd CVE-2026-10523
euvd EUVD-2026-35441

Description

An Authentication Bypass vulnerability (CWE-288) in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated attacker to create arbitrary administrative accounts and obtain full administrative access

References