Known vulnerabilities in Ivanti Standalone Sentry
Vendor:
Ivanti
Software:
Ivanti Standalone Sentry
Software CPE:
cpe:2.3:a:ivanti:ivanti_standalone_sentry:*:*:*:*:*:*:*:*
Website:
https://www.ivanti.com/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
1
Highest CVSSv4 Score:
10
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU134225 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2026-10520 |
CWE-78 | Critical | 10.5.2, 10.6.2, 10.7.1 | 10.06.2026 |
SB2026061065 |
||
| #VU134226 - Authentication Bypass Using an Alternate Path or Channel CVE-2026-10523 |
CWE-288 | High | 10.5.2, 10.6.2, 10.7.1 | 10.06.2026 |
SB2026061065 |
||
| #VU101672 - Incorrect Permission Assignment for Critical Resource CVE-2024-8540 |
CWE-732 | Low | 9.20.2, 10.0.2, 10.1.0 | 11.12.2024 |
SB2024121172 |
||
| #VU87673 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2023-41724 |
CWE-78 | High | 9.17.1, 9.18.1, 9.19.1 | 20.03.2024 |
SB2024032063 |