PT-2026-47807 · Ivanti · Sentry

Published

2026-06-09

·

Updated

2026-06-09

·

CVE-2026-10523

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ivanti Sentry versions prior to R10.5.2 Ivanti Sentry versions prior to R10.6.2 Ivanti Sentry versions prior to R10.7.1
Description An authentication bypass allows a remote unauthenticated attacker to create arbitrary administrative accounts and obtain full administrative access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Authentication Bypass Using an Alternate Path or Channel

Weakness Enumeration

Related Identifiers

CVE-2026-10523

Affected Products

Sentry