CVE-2026-10727
Severity CVSS v4.0:
Pending analysis
Type:
CWE-78
OS Command Injections
Publication date:
09/06/2026
Last modified:
23/07/2026
Description
An OS command injection vulnerability in Ivanti EPMM before 12.9.0.1, 12.8.0.3 and 12.7.0.2 versions allows a remote authenticated attacker to execute arbitrary commands as root
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH



