EXPOSURES › CVE-2023-35082
CVE-2023-35082
CRITICAL ⌖ ON CISA KEV · EXPLOITEDAn authentication bypass flaw in Ivanti EPMM and MobileIron Core allowed attackers to access restricted resources, directly enabling ransomware campaigns.
The authentication bypass vulnerability in Ivanti Endpoint Manager Mobile and MobileIron Core allowed unauthorized users to access restricted functionality, which was actively exploited in the wild to deploy ransomware. DIB organizations must ensure these products are patched and monitored, as the flaw represents a critical supply-chain risk that bypasses standard access controls. The failure is avoidable through timely patching and highlights the danger of relying on unpatched enterprise software.
Shame score — The vulnerability was actively exploited in the wild to deploy ransomware, demonstrating a severe failure in patch management and security hygiene that directly led to a mass data breach and operational disruption.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Ivanti Endpoint Manager Mobile (EPMM) and MobileIron Core contain an authentication bypass vulnerability that allows unauthorized users to access restricted functionality or resources of the application.
| PRODUCT | STATUS |
|---|---|
| Ivanti Neurons for ITSM (Formerly Service Manager) Ivanti |
Authorized |
| Ivanti Neurons for MDM (Formerly MobileIron) Ivanti |
Authorized |