Skip to content

Commit

Permalink
Ivanti Releases New Security Advisories - 20240718004
Browse files Browse the repository at this point in the history
  • Loading branch information
LSerki committed Jul 18, 2024
1 parent 1a85a9f commit 7740c9d
Showing 1 changed file with 19 additions and 0 deletions.
Original file line number Diff line number Diff line change
@@ -0,0 +1,19 @@
# Ivanti Releases New Security Advisories - 20240718004

## Overview

Ivanti has issued its July Security Update, which includes fixes for the following solutions: Ivanti Endpoint Manager (EPM), Ivanti Endpoint Manager for Mobile (EPMM) and Ivanti Docs@Work for Android

## What is vulnerable?

| Product(s) Affected | Version(s) | CVE | CVSS | Severity |
| ------------------- | ---------- | ----------------------------------------------------------------------------------------------------------------------------------------- | ------------- | ---------------------------------------------------------------- |
| Endpoint Manager (EPM) | all supported versions of EPM 2024 | [CVE-2024-37381](https://nvd.nist.gov/vuln/detail/CVE-2024-37381) | 8.4 | High |
| Endpoint Manager for Mobile (EPMM) | all supported versions of EPMM | [CVE-2024-36130](https://nvd.nist.gov/vuln/detail/CVE-2024-36130) </br> [CVE-2024-36131](https://nvd.nist.gov/vuln/detail/CVE-2024-36131) </br> [CVE-2024-36132](https://nvd.nist.gov/vuln/detail/CVE-2024-36132)</br> [CVE-2024-34788](https://nvd.nist.gov/vuln/detail/CVE-2024-34788)| 8.8 </br> 8.8 </br> 8.2 </br> 5.3 | High </br> High </br> High </br> Medium|
| Docs@Work for Android | all versions before 2.26.0 | [CVE-2024-37403](https://nvd.nist.gov/vuln/detail/CVE-2024-37403) | 5.0 | Medium |

## Recommendation

The WA SOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframe (refer [Patch Management](../guidelines/patch-management.md)):

- [Ivanti July Security Update](https://www.ivanti.com/blog/july-security-update)

0 comments on commit 7740c9d

Please sign in to comment.