criticalKEV
CVE-2023-35078
Ivanti EPMM unauthenticated API access - read/modify enrolled-device and user data
- Severity
- critical
- Affected product
- Ivanti EPMM / MobileIron Core
- Affected versions
- Ivanti EPMM / MobileIron Core all versions before the fix
- CISA KEV
- Listed as a known exploited vulnerability
- Added to NewScan
- 2026-08-02
- Detected by
- NewScan — free, self-hosted
How NewScan reports it
APPLIANCE FINGERPRINT
NewScan fingerprints the Ivanti EPMM / MobileIron Core appliance and reports this CVE when the detected version falls inside the affected range below.
References
Scan for this yourself — local, in-band scanning is free.
Get NewScan (FREE) →