CVE-2025-4427 | Ivanti Endpoint Manager Mobile up to 12.5.0.0 API authentication bypass (EUVD-2025-14388 / EDB-52421)
A vulnerability, which was classified as critical, has been found in Ivanti Endpoint Manager Mobile up to 12.5.0.0. The affected element is an unknown function of the component API. This manipulation causes authentication bypass using alternate channel.
This vulnerability appears as CVE-2025-4427. The attack may be initiated remotely. In addition, an exploit is available.
It is advisable to upgrade the affected component.