Insufficient filename validation in Ivanti Endpoint Manager before 2024 SU3 SR1 and 2022 SU8 SR2 allows a remote unauthenticated attacker to achieve remote code execution. User interaction is required.
                
            References
                    | Link | Resource | 
|---|---|
| https://forums.ivanti.com/s/article/Security-Advisory-September-2025-for-Ivanti-EPM-2024-SU3-and-EPM-2022-SU8 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    10 Oct 2025, 19:24
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time | Ivanti Ivanti endpoint Manager | |
| CPE | cpe:2.3:a:ivanti:endpoint_manager:2022:su7:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:su8_security_release_1:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:su4:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:su2:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:su3:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:su5:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2024:su1:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2024:su2:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:-:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:su6:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:su8:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:*:-:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2022:su1:*:*:*:*:*:* cpe:2.3:a:ivanti:endpoint_manager:2024:-:*:*:*:*:*:* | |
| References | () https://forums.ivanti.com/s/article/Security-Advisory-September-2025-for-Ivanti-EPM-2024-SU3-and-EPM-2022-SU8 - Vendor Advisory | 
09 Sep 2025, 22:15
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | (en) Insufficient filename validation in Ivanti Endpoint Manager before 2024 SU3 SR1 and 2022 SU8 SR2 allows a remote unauthenticated attacker to achieve remote code execution. User interaction is required. | 
09 Sep 2025, 16:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-09-09 16:15
Updated : 2025-10-10 19:24
NVD link : CVE-2025-9872
Mitre link : CVE-2025-9872
CVE.ORG link : CVE-2025-9872
JSON object : View
Products Affected
                ivanti
- endpoint_manager
CWE
                
                    
                        
                        CWE-434
                        
            Unrestricted Upload of File with Dangerous Type
