Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Ivanti: ‘Critical’ Mobile Management Vulnerabilities Seeing Exploitation

CRN by CRN
January 30, 2026
Home News
Share on FacebookShare on Twitter


A pair of flaws affecting Ivanti’s Endpoint Manager Mobile have been exploited in attacks impacting a ‘very limited’ number of customers, the company says.

A pair of critical-severity vulnerabilities affecting an Ivanti mobile management tool have been exploited in cyberattacks, according to the company.

The flaws—tracked at CVE-2026-1281 and CVE-2026-1340—affect Ivanti’s Endpoint Manager Mobile and have been exploited in attacks impacting a “very limited” number of customers, Ivanti said in an advisory Thursday.

[Related: 10 Major Cyberattacks And Data Breaches In 2025]

Patches are available to address the vulnerabilities, Ivanti said.

“No downtime is required to apply this patch, and we are not aware of any feature functionality impact with this patch,” the company said.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) released its own advisory Thursday confirming that at least one of the vulnerabilities (CVE-2026-1281) has been exploited by threat actors.

“This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise,” CISA said in the advisory.

Both vulnerabilities have a “critical” severity score of 9.8 out of 10.0.

In its advisory, Ivanti said the code injection vulnerabilities can be exploited to enable remote execution of code without authentication.

“We are aware of a very limited number of customers who have been exploited at the time of disclosure,” the company said in its advisory.

CRN has reached out to Ivanti for further comment.

CISA ordered federal agencies to implement patches for the Ivanti vulnerabilities by Feb. 1.

While the order only applies to Federal Civilian Executive Branch agencies, CISA “strongly urges” all impacted organizations to prioritize remediation of exploited vulnerabilities such as these, the agency said.



Source link

Tags: CyberattacksCybersecurityVulnerabilities
CRN

CRN

Next Post
Everything you need to know about Kevin Warsh, Trump’s pick to lead the Federal Reserve

Everything you need to know about Kevin Warsh, Trump's pick to lead the Federal Reserve

Recommended.

Innodisk Showcased Embedded and Automation Innovations at Automate Show 2025

Innodisk Showcased Embedded and Automation Innovations at Automate Show 2025

May 22, 2025
Unwrap the Magic: CASEKOO’s Holiday Blind-Box Sale Delivers Surprise and Joy for Tech Enthusiasts

Unwrap the Magic: CASEKOO’s Holiday Blind-Box Sale Delivers Surprise and Joy for Tech Enthusiasts

November 14, 2025

Trending.

Cloud Market Share Q1 2026: AWS, Microsoft, Google Battling In AI Era

Cloud Market Share Q1 2026: AWS, Microsoft, Google Battling In AI Era

May 4, 2026
AWS, Google, Oracle, Microsoft Top Gartner’s Cloud AI Infrastructure List For 2026

AWS, Google, Oracle, Microsoft Top Gartner’s Cloud AI Infrastructure List For 2026

July 29, 2026
The 50 Coolest Software-Defined Storage Vendors: The 2026 Storage 100

The 50 Coolest Software-Defined Storage Vendors: The 2026 Storage 100

April 13, 2026
AWS Vs. Google Cloud Vs. Microsoft Azure Q1 Earnings Face-Off

AWS Vs. Google Cloud Vs. Microsoft Azure Q1 Earnings Face-Off

May 1, 2026
IDCA datacentres report: Global concentration and the Goldilocks zone | Computer Weekly

IDCA datacentres report: Global concentration and the Goldilocks zone | Computer Weekly

May 12, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio