Skip to content
COOEY

EXPOSURES › CVE-2023-35082

CVE-2023-35082

CRITICAL ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2024-01-18 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-35082 ↗
⌖ EXPLOITED IN THE WILD SHAME 85/100 ransomwareexploited-in-wildsupply-chaindata-breachunpatchednegligence

An authentication bypass flaw in Ivanti EPMM and MobileIron Core allowed attackers to access restricted resources, directly enabling ransomware campaigns.

The authentication bypass vulnerability in Ivanti Endpoint Manager Mobile and MobileIron Core allowed unauthorized users to access restricted functionality, which was actively exploited in the wild to deploy ransomware. DIB organizations must ensure these products are patched and monitored, as the flaw represents a critical supply-chain risk that bypasses standard access controls. The failure is avoidable through timely patching and highlights the danger of relying on unpatched enterprise software.

Shame score — The vulnerability was actively exploited in the wild to deploy ransomware, demonstrating a severe failure in patch management and security hygiene that directly led to a mass data breach and operational disruption.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Ivanti Endpoint Manager Mobile (EPMM) and MobileIron Core contain an authentication bypass vulnerability that allows unauthorized users to access restricted functionality or resources of the application.

AFFECTED FEDRAMP PRODUCTS · 2
PRODUCTSTATUS
Ivanti Neurons for ITSM (Formerly Service Manager)
Ivanti
Authorized
Ivanti Neurons for MDM (Formerly MobileIron)
Ivanti
Authorized