8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
Path traversal in Ivanti Endpoint Manager allows a remote unauthenticated attacker to achieve remote code execution. User interaction is required.
AI Analysis
AI processing failed - returned non-JSON response
Basic Information
ID
CVE-2025-9713
Source
ivanti
Published
Oct 13, 2025 at 21:08
Affected Product
Vendor
Ivanti
Product
Endpoint Manager
Version
2024 SU3 SR1
Affected Versions
Ivanti Endpoint Manager 2024 SU3 SR1
Ivanti Endpoint Manager 2022 SU8 SR2
Ivanti Endpoint Manager 2022 SU8 SR2