Global Trend Radar
The Hacker News US security 2026-05-08 02:55

Ivanti EPMM CVE-2026-6973 RCEがアクティブに悪用されており、管理者レベルのアクセスを許可

原題: Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level Access

元記事を開く →

分析結果

カテゴリ
セキュリティ
重要度
62
トレンドスコア
21
要約
Ivantiは、Endpoint Manager Mobile (EPMM)に影響を与える新たなセキュリティ脆弱性CVE-2026-6973が、限られた攻撃で悪用されていると警告しています。この高危険度の脆弱性は、CVSSスコア7.2で、適切でないアクセス制御が原因です。
キーワード
Ivanti is warning that a new security flaw impacting Endpoint Manager Mobile (EPMM) has been explored in limited attacks in the wild. The high-severity vulnerability, CVE-2026-6973 (CVSS score: 7.2), is a case of improper input validation affecting EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0.1. It allows "a remotely authenticated user with administrative access to achieve remote code Ivanti is warning that a new security flaw impacting Endpoint Manager Mobile (EPMM) has been explored in limited attacks in the wild. The high-severity vulnerability, CVE-2026-6973 (CVSS score: 7.2), is a case of improper input validation affecting EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0.1. It allows "a remotely authenticated user with administrative access to achieve remote code