Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-50972 | An SQL Injection vulnerability in a web component of EPMM versions before 12.1.0.0 allows an authenticated user with appropriate privilege to access or modify data in the underlying database. |
Fri, 13 Jun 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ivanti
Ivanti endpoint Manager Mobile |
|
| CPEs | cpe:2.3:a:ivanti:endpoint_manager_mobile:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ivanti
Ivanti endpoint Manager Mobile |
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-02T20:53:21.862Z
Reserved: 2023-10-27T01:00:13.399Z
Link: CVE-2023-46806
Updated: 2024-08-02T20:53:21.862Z
Status : Analyzed
Published: 2024-05-22T23:15:08.050
Modified: 2026-06-17T06:31:40.510
Link: CVE-2023-46806
No data.
OpenCVE Enrichment
No data.
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
EUVD