#VU119425 Improper Verification of Cryptographic Signature in Endpoint Manager - CVE-2025-13662
Published: December 9, 2025
Endpoint Manager
Ivanti
Description
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to improper verification of cryptographic signature in the patch management component. A remote non-authenticated attacker can supply a malicious patch, trick the administrator into installing it and compromise the affected system.