216.73.216.6

Critical Vulnerabilities in Ivanti EPMM Exploited

· Published 18/02/2026 02:31 · Modified 18/02/2026 12:10

Export JSON

Essential information

Published
18/02/2026 02:31
Modified
18/02/2026 12:10
Tags
2026-02-18 CVE-2026-1281 CVE-2026-1340 epmm ivanti mobile device management reconnaissance remote code execution reverse shell web shell zero-day
Related entities
2 vulnerabilities (cve), 17 observables, 8 techniques (mitre), 13 others

Description

Two critical vulnerabilities ( and ) in Endpoint Manager Mobile are being actively exploited, allowing unauthenticated on servers. Widespread exploitation has been observed, including reverse shells, web shells, , and malware downloads. Affected sectors include government, healthcare, manufacturing, and technology in multiple countries. Over 4,400 vulnerable instances have been identified. Attackers are moving quickly from initial access to deploying persistent backdoors. Immediate patching is strongly recommended, as exploitation attempts are largely automated and opportunistic.

External references