VYPR
Critical severity9.1NVD Advisory· Published Nov 15, 2023· Updated Jun 17, 2026

CVE-2023-39337

CVE-2023-39337

Description

A security vulnerability in EPMM Versions 11.10, 11.9 and 11.8 older allows a threat actor with knowledge of an enrolled device identifier to access and extract sensitive information, including device and environment configuration details, as well as secrets. This vulnerability poses a serious security risk, potentially exposing confidential data and system integrity.

Affected products

3
  • Ivanti/EPMMcpe-rescue2 versions
    11.10.0.0+ 1 more
    • (no CPE)range: 11.10.0.0
    • (no CPE)range: <=11.10
  • cpe:2.3:a:ivanti:endpoint_manager_mobile:*:*:*:*:*:*:*:*
    Range: <=11.9.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.