CVE-2026-5787: Critical severity Ivanti Endpoint Manager Mobile (EPMM) vulnerability
An Improper Certificate Validation in Ivanti EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0.1 allows a remote unauthenticated attacker to impersonate registered Sentry hosts and obtain valid CA-signed client certificates.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5787?
CVE-2026-5787 is considered a critical vulnerability due to its potential to allow remote unauthenticated attackers to impersonate registered hosts.
How do I fix CVE-2026-5787?
To fix CVE-2026-5787, upgrade Ivanti EPMM to versions 12.6.1.1, 12.7.0.1, or 12.8.0.1 or later.
What does CVE-2026-5787 affect?
CVE-2026-5787 affects Ivanti Endpoint Manager Mobile (EPMM) versions prior to 12.6.1.1, 12.7.0.1, and 12.8.0.1.
Who can exploit CVE-2026-5787?
CVE-2026-5787 can be exploited by remote unauthenticated attackers.
What is the impact of CVE-2026-5787?
The impact of CVE-2026-5787 includes the potential compromise of secure communications by allowing certificate impersonation.