VYPR
Medium severity6.7NVD Advisory· Published May 22, 2024· Updated Jun 17, 2026

CVE-2023-46806

CVE-2023-46806

Description

An SQL Injection vulnerability in a web component of EPMM versions before 12.1.0.0 allows an authenticated user with appropriate privilege to access or modify data in the underlying database.

Affected products

3
  • cpe:2.3:a:ivanti:endpoint_manager_mobile:*:*:*:*:*:*:*:*
    Range: <12.1.0.0
  • Ivanti/EPMMllm-fuzzy2 versions
    <12.1.0.0+ 1 more
    • (no CPE)range: <12.1.0.0
    • (no CPE)range: 12.1.0.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.