Known Vulnerabilities for Endpoint Manager by Ivanti
Listed below are 10 of the newest known vulnerabilities associated with "Endpoint Manager" by "Ivanti".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-62361 json | listmonk is a standalone, self-hosted, newsletter and mailing list manager. Prior to 6.2.0, listmonk’s GET /api/subscribers... | Not Provided | 2026-07-15 | 2026-07-16 |
| CVE-2026-54910 json | FileBrowser Quantum is a free, self-hosted, web-based file manager. Prior to version 1.4.3-beta, the `subtitlesHandler` endpo... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-54685 json | FileBrowser Quantum is a free, self-hosted, web-based file manager. Prior to version 1.3.2-beta, the `/api/auth/login` authen... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-50892 json | Incorrect access control in the "Let's Encrypt" certificate download endpoint of Nginx Proxy Manager v2.14.0 allows authentic... | Not Provided | 2026-06-15 | 2026-06-16 |
| CVE-2026-49998 json | Centrifugo is an open-source scalable real-time messaging server. Prior to 6.8.1, Centrifugo dynamic JWKS endpoint verificati... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-49394 json | Frappe is a full-stack web application framework. Prior to 16.19.0, authorization bypass was possible via the update_page end... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-48777 json | FileBrowser Quantum is a free, self-hosted, web-based file manager. Versions prior to 1.3.2-stable, 1.4.0-beta and 1.4.1-beta... | Not Provided | 2026-06-16 | 2026-06-17 |
| CVE-2026-48017 json | DbGate is cross-platform database manager. In versions 7.1.8 and prior, the POST /runners/load-reader endpoint in DbGate acce... | Not Provided | 2026-06-15 | 2026-07-23 |
| CVE-2026-47670 json | DbGate is cross-platform database manager. Versions 7.1.8 and prior are vulnerable to authenticated Remote Code Execution (RC... | Not Provided | 2026-07-23 | 2026-07-24 |
| CVE-2026-47205 json | Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.36.0 until 1.36.9, 1.37.5, and ... | Not Provided | 2026-06-26 | 2026-06-27 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ivanti | Endpoint Manager | 2020.1.1 | |||
| Application | Ivanti | Endpoint Manager | 2020.1 | |||
| Application | Ivanti | Endpoint Manager | 2019.1 | |||
| Application | Ivanti | Endpoint Manager | 2018.3 | |||
| Application | Ivanti | Endpoint Manager | 2018.1 | |||
| Application | Ivanti | Endpoint Manager | 2017.3 | |||
| Application | Ivanti | Endpoint Manager | 2017.1 | |||
| Application | Ivanti | Endpoint Manager | 2016.4 |