CVE-2026-12647
- EPSS 1.19%
- Veröffentlicht 08.09.2026 14:43:54
- Zuletzt bearbeitet 18.09.2026 18:14:02
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVE-2026-12646
- EPSS 1.19%
- Veröffentlicht 08.09.2026 14:40:43
- Zuletzt bearbeitet 18.09.2026 18:15:33
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVE-2026-12645
- EPSS 1.23%
- Veröffentlicht 08.09.2026 14:38:14
- Zuletzt bearbeitet 18.09.2026 18:16:44
A Missing Authorization vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVE-2026-12648
- EPSS 1.46%
- Veröffentlicht 08.09.2026 14:36:00
- Zuletzt bearbeitet 18.09.2026 18:05:15
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVE-2026-12650
- EPSS 1.46%
- Veröffentlicht 08.09.2026 14:33:02
- Zuletzt bearbeitet 18.09.2026 18:07:30
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVE-2026-12651
- EPSS 1.46%
- Veröffentlicht 08.09.2026 14:26:35
- Zuletzt bearbeitet 18.09.2026 17:58:04
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote authenticated attacker to execute arbitrary code on the server.
CVE-2026-12745
- EPSS 2.09%
- Veröffentlicht 08.09.2026 14:22:52
- Zuletzt bearbeitet 18.09.2026 17:49:51
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.
CVE-2026-12744
- EPSS 2.17%
- Veröffentlicht 08.09.2026 14:20:34
- Zuletzt bearbeitet 18.09.2026 17:56:12
A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.
CVE-2026-9614
- EPSS 1.44%
- Veröffentlicht 01.06.2026 17:50:03
- Zuletzt bearbeitet 22.07.2026 08:10:00
An Improper Access Control vulnerability in Ivanti Neurons for ITSM (cloud and on-premises) allows a remote authenticated attacker to gain administrative access.
CVE-2026-4914
- EPSS 0.35%
- Veröffentlicht 14.04.2026 14:15:48
- Zuletzt bearbeitet 17.04.2026 15:11:03
Stored XSS in Ivanti N-ITSM before version 2025.4 allows a remote authenticated attacker to obtain limited information from other user sessions. User interaction is required.