• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
ivanti warns of another endpoint manager mobile vulnerability under active

Ivanti Warns of Another Endpoint Manager Mobile Vulnerability Under Active Attack

You are here: Home / General Cyber Security News / Ivanti Warns of Another Endpoint Manager Mobile Vulnerability Under Active Attack
July 29, 2023

Ivanti has disclosed still one more security flaw impacting Endpoint Manager Cell (EPMM), previously acknowledged as MobileIron Core, that it reported has been weaponized as section of an exploit chain by malicious actors in the wild.

The new vulnerability, tracked as CVE-2023-35081 (CVSS rating: 7.8), impacts supported versions 11.10, 11.9, and 11.8, as very well as these that are at present conclude-of-lifetime (EoL).

“CVE-2023-35081 allows an authenticated administrator to accomplish arbitrary file writes to the EPMM server,” the company said in an advisory. “This vulnerability can be applied in conjunction with CVE-2023-35078, bypassing administrator authentication and ACLs restrictions (if applicable).”

✔ Approved From Our Partners
AOMEI Backupper Lifetime

Protect and backup your data using AOMEI Backupper. AOMEI Backupper takes secure and encrypted backups from your Windows, hard drives or partitions. With AOMEI Backupper you will never be worried about loosing your data anymore.

Get AOMEI Backupper with 72% discount from an authorized distrinutor of AOMEI: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


A effective exploit could permit a danger actor to write arbitrary data files on the appliance, thus enabling the malicious party to execute OS commands on the equipment as the tomcat person.

“As of now we are only conscious of the identical confined quantity of buyers impacted by CVE-2023-35078 as remaining impacted by CVE-2023-35081,” the organization added.

It is worth noting that CVE-2023-35078 is a critical remote unauthenticated API entry vulnerability that permits remote attackers to receive sensitive information and facts, add an EPMM administrative account, and alter the configuration for the reason that of an authentication bypass.

The security flaws have been exploited by unfamiliar actors concentrating on Norwegian federal government entities, prompting the U.S. Cybersecurity and Infrastructure Security Company (CISA) to release an inform urging buyers and companies to use the most current fixes.

Future WEBINARShield Versus Insider Threats: Master SaaS Security Posture Management

Apprehensive about insider threats? We have bought you lined! Sign up for this webinar to check out simple strategies and the secrets and techniques of proactive security with SaaS Security Posture Administration.

Sign up for Currently

The advancement also will come as the Google Project Zero group claimed 41 in-the-wild -times had been detected and disclosed in 2022, down from 69 in 2021, noting that 17 of people are variants of earlier community vulnerabilities.

“Identical to the overall numbers, there was a 42% drop in the range of detected in-the-wild -times targeting browsers from 2021 to 2022, dropping from 26 to 15,” Google TAG researcher Maddie Stone said.

“We evaluate this demonstrates browsers’ endeavours to make exploitation much more challenging over-all as properly as a shift in attacker actions away from browsers to zero-click exploits that goal other parts on the unit.”

Found this post appealing? Comply with us on Twitter  and LinkedIn to study far more distinctive content we write-up.


Some pieces of this posting are sourced from:
thehackernews.com

Previous Post: «icedid malware adapts and expands threat with updated backconnect module IcedID Malware Adapts and Expands Threat with Updated BackConnect Module
Next Post: Hackers Deploy “SUBMARINE” Backdoor in Barracuda Email Security Gateway Attacks hackers deploy "submarine" backdoor in barracuda email security gateway attacks»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.