VYPR

Sentry

by Ivanti

CVEs (2)

  • CVE-2026-10520CriJun 9, 2026
    risk 0.65cvss 10.0epss

    An OS Command Injection vulnerability in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated user to achieve root-level remote code execution

  • CVE-2026-10523CriJun 9, 2026
    risk 0.64cvss 9.9epss

    An Authentication Bypass vulnerability (CWE-288) in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated attacker to create arbitrary administrative accounts and obtain full administrative access