CVE-2026-18129: High severity vulnerability
Cleartext transmission of sensitive information in the Core of Ivanti Endpoint Manager before version 2024 SU7 allows a remote unauthenticated attacker in a MITM position to leak credentials for external SQL connections.
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Ivanti Endpoint Manager Coreto a version that resolves this vulnerability.Fixed in 2024 SU7 - Operational
Rotate credentials that may have been exposed through leaked credentials for external SQL connections prior to upgrading.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-18129?
CVE-2026-18129 has a high severity rating of 8.1.
How do I fix CVE-2026-18129?
To fix CVE-2026-18129, upgrade Ivanti Endpoint Manager to version 2024 SU7 or later.
What information is at risk with CVE-2026-18129?
CVE-2026-18129 puts credentials for external SQL connections at risk due to cleartext transmission.
Who is affected by CVE-2026-18129?
Organizations using Ivanti Endpoint Manager versions prior to 2024 SU7 are affected by CVE-2026-18129.
What attack vector is exploited in CVE-2026-18129?
CVE-2026-18129 can be exploited by remote unauthenticated attackers in a Man-in-the-Middle (MITM) position.