CVE-2025-10573: Stored XSS in Ivanti EPM
A critical stored XSS vulnerability (CVE-2025-10573) in Ivanti Endpoint Manager lets attackers poison the admin dashboard with malicious scripts, leading to session hijacking and device compromise.
AppTrana blocks these malicious scan submissions at the edge, preventing stored XSS payloads from ever reaching the EPM dashboard, even before patching.
Read more- https://www.indusface.com/blog/cve-2025-10573-stored-xss-in-ivanti-endpoint-manager/
For more insights on website and API security fundamentals, subscribe to our newsletter-https://bit.ly/4s6Z1PW
#CyberSecurity #VulnerabilityAlert #CVE #Ivanti #XSS #EndpointSecurity #InfoSec #AppSec #SecurityAwareness