CVE-2026-8109: Medium severity Ivanti Ivanti Endpoint Manager Core Server vulnerability
An exposed dangerous method on the Core Server of Ivanti Endpoint Manager before version 2024 SU6 allows a remote authenticated attacker to leak access credentials.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Ivanti Endpoint Manager Core Serverto a version that resolves this vulnerability.Fixed in 2024 SU6 - Operational
Because the issue can leak access credentials on the Ivanti Endpoint Manager Core Server, rotate any potentially exposed access credentials after upgrading to the fixed version (before version 2024 SU6 is vulnerable).
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8109?
CVE-2026-8109 is considered a high severity vulnerability as it allows remote authenticated attackers to leak sensitive access credentials.
How do I fix CVE-2026-8109?
To fix CVE-2026-8109, upgrade Ivanti Endpoint Manager Core Server to version 2024 SU6 or a later version.
Which versions are affected by CVE-2026-8109?
CVE-2026-8109 affects all versions of Ivanti Endpoint Manager Core Server prior to 2024 SU6.
Who is vulnerable to CVE-2026-8109?
Organizations using Ivanti Endpoint Manager Core Server below version 2024 SU6 are vulnerable to CVE-2026-8109.
What type of attack does CVE-2026-8109 enable?
CVE-2026-8109 enables remote authenticated attackers to leak access credentials, posing a risk to system security.