Ivanti, a security software company, has recently faced a significant challenge with its Sentry secure mobile gateway solution. The issue stems from two critical vulnerabilities, one of which is a maximum-severity flaw that could allow remote attackers to execute code with root privileges. This vulnerability, tracked as CVE-2026-10520, is a result of an OS command injection weakness. The second vulnerability, CVE-2026-10523, is a critical authentication bypass that can be exploited remotely by unauthenticated attackers to create rogue administrative accounts and gain full administrative access.
These vulnerabilities were patched by Ivanti on Tuesday with the release of Sentry versions R10.5.2, R10.6.2, and R10.7.1. Fortunately, the company has no evidence that these vulnerabilities are being actively exploited in the wild, and they advise admins to upgrade their systems to protect against potential attacks.
However, this is not the first time Ivanti has faced such security concerns. In recent years, Ivanti vulnerabilities have often been targeted in attacks because they provide an easy way for cybercriminals to breach targets' enterprise networks and steal sensitive corporate and customer data. For instance, the Cybersecurity and Infrastructure Security Agency (CISA) ordered U.S. federal agencies to patch their Ivanti devices after the company warned customers to immediately patch a high-severity remote code execution vulnerability in Endpoint Manager Mobile (EPMM) that was exploited in zero-day attacks.
The impact of these vulnerabilities is significant, as they can lead to the creation of rogue administrative accounts and full administrative access. This can result in the theft of sensitive corporate and customer data, which can have severe consequences for businesses and individuals alike.
In conclusion, Ivanti's recent security issues highlight the importance of regularly updating and patching software to protect against vulnerabilities. It is crucial for businesses to take proactive measures to secure their networks and data, as the consequences of a breach can be devastating. Additionally, the use of breach and attack simulation tests can help security teams identify and address vulnerabilities before they are exploited by attackers.