CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Ivanti EPMM Zero-Days: Reconnaissance to Exploitation

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 1902

As cited

Copy frozen at (site build).

vulnerabilities

Ivanti EPMM Zero-Days: Reconnaissance to Exploitation

Two critical zero-day vulnerabilities in Ivanti Endpoint Manager Mobile (CVE-2025-4427 and CVE-2025-4428) are under active exploitation following increased reconnaissance scanning activity. When chained together, these flaws allow unauthenticated remote code execution on affected systems.

Why it matters: Organizations running Ivanti EPMM need immediate action to patch or isolate these systems, as threat actors are actively exploiting these vulnerabilities to gain unauthorized access without credentials.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Ivanti EPMM Zero-Days: Reconnaissance to Exploitation

Two critical zero-day vulnerabilities in Ivanti Endpoint Manager Mobile (CVE-2025-4427 and CVE-2025-4428) are under active exploitation following increased reconnaissance scanning activity. When chained together, these flaws allow unauthenticated remote code execution on affected systems.

Why it matters: Organizations running Ivanti EPMM need immediate action to patch or isolate these systems, as threat actors are actively exploiting these vulnerabilities to gain unauthorized access without credentials.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary