CYBERHAWK / CVE / CVE-2026-5788
CVE-2026-5788
Ivanti EPMM
HIGH
CVSS 7.0
other
The flaw
Remote unauthenticated attackers can invoke arbitrary methods due to improper access control.
What to do
Update to version 12.6.1.1, 12.7.0.1, or 12.8.0.1
References
In the news
- Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level AccessThe Hacker News · 2026-05-07
- Ivanti warns of new EPMM flaw exploited in zero-day attacksBleepingComputer · 2026-05-07
- Warning: Authenticated Remote Code Execution Vulnerability in Ivanti EPMM Exploited, Patch Immediately!Centre for Cybersecurity Belgium · 2026-05-07