These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2024-21893 is a server-side request forgery (SSRF) vulnerability affecting Ivanti Connect Secure, Policy Secure, and Neurons. CISA added the issue to its Known Exploited Vulnerabilities catalog on 2024-01-31 and marked it as having known ransomware campaign use. CISA’s required action is to apply vendor mitigations per Ivanti’s instructions, or discontinue use of the product if mitigations are unavailable.
CVE-2023-35082 is an authentication bypass vulnerability affecting Ivanti Endpoint Manager Mobile (EPMM) and MobileIron Core. CISA added it to the Known Exploited Vulnerabilities (KEV) catalog on 2024-01-18 and marked it as known to have been used in ransomware campaigns. For defenders, this is a high-priority exposure: CISA’s required action is to apply vendor mitigations or discontinue use of the produc [truncated]
CVE-2024-21887 affects Ivanti Connect Secure and Policy Secure and is identified by CISA as a known exploited vulnerability. CISA added it to the KEV catalog on 2024-01-10, with a remediation due date of 2024-01-22, and marked known ransomware campaign use as Known. For defenders, this is a high-priority internet-facing gateway issue: follow vendor instructions referenced by CISA, and if mitigations are n [truncated]
CVE-2023-46805 is an Ivanti Connect Secure and Policy Secure authentication bypass that CISA lists in the Known Exploited Vulnerabilities catalog. The KEV entry marks it as known exploited and notes known ransomware campaign use, so defenders should treat it as an active, high-priority issue.
CVE-2023-38035 is an Ivanti Sentry authentication bypass issue affecting the administrator interface. CISA added it to the Known Exploited Vulnerabilities catalog on 2023-08-22 and marked it for remediation by 2023-09-12, indicating active exploitation risk and a need for immediate defensive attention.
CVE-2023-35081 is a path traversal vulnerability affecting Ivanti Endpoint Manager Mobile (EPMM). It was added to CISA’s Known Exploited Vulnerabilities catalog on 2023-07-31, which means defenders should treat it as an actively exploited issue rather than a routine disclosure. The CISA KEV record directs organizations to apply vendor mitigations or discontinue use of the product if mitigations are unavailable.
CVE-2023-35078 is an Ivanti Endpoint Manager Mobile (EPMM) authentication bypass issue associated with remote unauthenticated API access. CISA added it to the Known Exploited Vulnerabilities catalog on 2023-07-25 and marked known ransomware campaign use as Known, which makes this an active-risk item rather than a purely theoretical flaw. The defensive priority is to follow vendor mitigation guidance immed [truncated]
CVE-2021-22900 is an unrestricted file upload vulnerability in Ivanti Pulse Connect Secure. CISA lists it in the Known Exploited Vulnerabilities catalog, indicating confirmed exploitation in the wild. The CISA KEV entry directs organizations to apply updates per vendor instructions and references Emergency Directive 21-03 for further guidance.
CVE-2021-22899 is a command injection vulnerability affecting Ivanti Pulse Connect Secure. CISA included it in the Known Exploited Vulnerabilities catalog on 2021-11-03, which means defenders should treat it as a high-priority patching item. CISA’s guidance points to applying updates per the vendor’s instructions and references Emergency Directive 21-03 for additional requirements and deadlines.
CVE-2021-22894 is a buffer overflow vulnerability in Ivanti Pulse Connect Secure Collaboration Suite. CISA lists it in the Known Exploited Vulnerabilities catalog, which indicates it has been observed as exploited and should be prioritized for remediation.
CVE-2021-22893 is a use-after-free vulnerability in Ivanti Pulse Connect Secure that CISA included in its Known Exploited Vulnerabilities catalog on 2021-11-03. Because it is listed by CISA as known exploited and marked for known ransomware campaign use, organizations should treat remediation as urgent and follow vendor update guidance and CISA’s ED 21-03 requirements.
CVE-2020-8260 is a code execution vulnerability associated with Ivanti Pulse Connect Secure. CISA added it to the Known Exploited Vulnerabilities catalog on 2021-11-03 and tied remediation to vendor updates and ED 21-03 guidance. Because the provided source corpus is limited, the safest interpretation is operational: treat this as a priority patch-and-verify item for any organization running the product.
CVE-2020-8243 is a code execution vulnerability affecting Ivanti Pulse Connect Secure. CISA added it to the Known Exploited Vulnerabilities catalog on 2021-11-03, which means it is treated as a vulnerability with known exploitation risk and should be prioritized for remediation. CISA’s guidance for this entry is to apply vendor updates per Ivanti instructions, with the KEV due date aligned to ED 21-03 requirements.
CVE-2020-15505 is a remote code execution vulnerability affecting Ivanti MobileIron Multiple Products. CISA added it to the Known Exploited Vulnerabilities catalog on 2021-11-03, which makes it a priority for defensive action. The supplied corpus does not include exploit mechanics, affected versions, or patch details, so the safest response is to follow Ivanti’s remediation guidance and treat exposed Mobi [truncated]
CVE-2019-11539 is a command injection vulnerability affecting Ivanti Pulse Connect Secure and Pulse Policy Secure. In the supplied CISA KEV entry, it is marked as known exploited and noted for known ransomware campaign use, making it a high-priority issue for any organization still running affected deployments.
CVE-2019-11510 is a vulnerability in Ivanti Pulse Connect Secure that CISA lists in its Known Exploited Vulnerabilities catalog as an arbitrary file read issue. Because it is KEV-listed and marked for known ransomware campaign use, defenders should treat it as urgent and follow vendor remediation guidance without delay.
CVE-2016-3147 is a critical network-exploitable buffer overflow in the collector.exe listener used by Landesk Management Suite 10.0.0.271 and earlier. According to the provided NVD record, a large packet can trigger the flaw, leading to denial of service and possibly arbitrary code execution. The published CVSS 3.1 vector is 9.8 (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H), so environments exposing this listener [truncated]