Ivanti September 2026 Patch Batch: 10 CVEs Across EPMM, Neurons for ITSM, and Sentry (CVE-2026-12744/12745 Unauthenticated Deserialization RCE, CVE-2026-12645-12647 Missing Authorization RCE, CVE-2026-18851 EPMM Privilege Escalation, CVE-2026-83527 Sentry Auth Bypass)

Ivanti September 2026 Patch Batch (TL-2026-2396) is a critical-severity software vulnerability scored CVSS 9.9, first published 2026-09-08. It has no confirmed attribution, affects Ivanti Endpoint Manager Mobile (EPMM), references 10 CVEs (CVE-2026-18851, CVE-2026-12744, CVE-2026-12745), maps to 12 MITRE ATT&CK techniques (T1003, T1021, T1046), and is covered by 9 detection rules and 11 indicators of compromise.

Key facts for TL-2026-2396

Threat ID
TL-2026-2396
Severity
CRITICAL
CVSS
9.9 (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H)
Status
ACTIVE
Category
VULNERABILITY
First published
2026-09-08
Last reviewed
2026-09-08
Motivation
UNKNOWN
Target sectors
government administration, finance, health, technology, telecoms, defense, education
Target regions
North America, Europe, Asia Pacific, Middle East, Latin America
Detection rules
9
Indicators of compromise
11

Malware and tooling in Ivanti September 2026 Patch Batch

Malware and tooling: SPAWN ecosystem, Cobalt Strike

Ivanti disclosed 10 vulnerabilities across three enterprise products in its September 2026 security update: EPMM (1), Neurons for ITSM (8), and Sentry (1). The most critical findings include two unauthenticated deserialization remote code execution flaws in Neurons for ITSM (CVE-2026-12744, CVE-2026-12745, CVSS 9.8 each), three authenticated missing-authorization RCE flaws enabling arbitrary code execution (CVE-2026-12645-12647, CVSS 9.9 each), and an authentication bypass granting unauthenticated administrative-level access to Sentry gateway appliances (CVE-2026-83527, CVSS 8.1). While Ivanti reports no confirmed active exploitation prior to disclosure, its edge and mobile management infrastructure has been aggressively targeted by state-sponsored threat actors throughout 2026 — including three prior disclosure batches (January, May, June) with direct CISA KEV additions. Cloud/SaaS Neurons for ITSM instances were remediated on August 9, 2026; on-premises customers must apply the September 2026 patches urgently.

How Ivanti September 2026 Patch Batch works

On September 8, 2026, Ivanti publicly disclosed 10 distinct security vulnerabilities spanning three enterprise infrastructure products as part of its September 2026 security update. The vulnerabilities range from CVSS 8.1 to 9.9 and include multiple classes of remotely exploitable flaws affecting the Endpoint Manager Mobile (EPMM), Neurons for ITSM (on-premises), and Sentry gateway products. Ivanti's security advisory states there is 'no evidence of active exploitation' prior to disclosure, though the company warns that its products have been under sustained threat-actor targeting throughout 2026.

CVE-2026-18851 (CVSS 8.8, HIGH) affects Ivanti Endpoint Manager Mobile (EPMM), the enterprise mobile device management platform formerly known as MobileIron Core. The vulnerability is a missing authorization flaw (CWE-862) that allows a remote authenticated attacker to escalate their privileges to full administrative access. Affected versions include EPMM 12.9.0.1 and earlier, and 12.8.0.3 and earlier. Fixed versions are 12.10.0.0, 12.9.0.2, and 12.8.0.4. EPMM sits at the network perimeter managing every enrolled mobile device, making administrative compromise particularly dangerous — an attacker with admin access can push malicious policy, certificates, and configuration to the entire mobile fleet, effectively achieving an MDM takeover.

The Neurons for ITSM product received the largest share of fixes with 8 CVEs, all affecting the on-premises deployment (cloud/SaaS instances were silently patched on August 9, 2026). These break into three categories: (1) two unauthenticated deserialization remote code execution flaws, CVE-2026-12744 and CVE-2026-12745 (CVSS 9.8, CRITICAL, CWE-502), enabling a remote attacker with no authentication to execute arbitrary code on the ITSM application server by sending crafted serialized data; (2) three authenticated remote code execution flaws via missing authorization, CVE-2026-12645, CVE-2026-12646, and CVE-2026-12647 (CVSS 9.9, CRITICAL, CWE-862), where a low-privilege authenticated user can escalate to execute arbitrary code on the server with a scope-changed impact affecting connected systems; and (3) three authenticated deserialization remote code execution flaws, CVE-2026-12648 (CVSS 8.8, HIGH), CVE-2026-12650 (CVSS 9.9, CRITICAL), and CVE-2026-12651 (CVSS 8.8, HIGH), all CWE-502 deserialization vulnerabilities requiring authentication. Notably, CVE-2026-12650 carries a scope-changed (S:C) modifier, indicating the deserialization can impact resources beyond the vulnerable component. Ivanti disclosed that these eight ITSM vulnerabilities were identified using 'advanced large language models integrated into its product security' — representing a novel AI-assisted vulnerability discovery methodology in enterprise software security.

The final vulnerability, CVE-2026-83527 (CVSS 8.1, HIGH), affects Ivanti Sentry, the secure gateway appliance that manages connections between Ivanti products and backend infrastructure. It is an authentication bypass (CWE-288) enabling a remote unauthenticated attacker to gain administrative-level access to the Sentry appliance. The vulnerability was discovered by security researcher btaol of Aquila Sec Lab and is fixed in Sentry versions R10.8.2, R10.7.3, and R10.6.4. Sentry appliances that are managed through EPMM or Neurons for MDM may have restricted network access that reduces the practical attack surface.

The broader context for this disclosure is critical for SOC analysis: Ivanti products have been under sustained, sophisticated attack throughout 2026. In January 2026, UNC5221 (a suspected China-nexus APT) exploited CVE-2026-1281 and CVE-2026-1340 as zero-days against EPMM, achieving pre-auth RCE. The May 2026 advisory explicitly warned that attackers were chaining credentials harvested from those January breaches to compromise additional appliances — a credential chain that makes credential rotation as important as patching. In June 2026, CVE-2026-10520 (Sentry pre-auth root RCE, CVSS 10.0) and CVE-2026-10523 (Sentry auth bypass, CVSS 9.9) were disclosed and CVE-2026-10520 was added to CISA's Known Exploited Vulnerabilities catalog within 48 hours of disclosure. Across this period, Mandiant documented 15+ malware families (SPAWNANT, SPAWNMOLE, SPAWNSNAIL, SPAWNSLOTH, TRAILBLAZE, BRUSHFIRE, ZIPLINE, LIGHTWIRE, WARPWIRE, DRYHOOK, PHASEJAM) deployed against Ivanti appliances, including malware that survived factory resets and firmware upgrades.

SOC teams should treat these vulnerabilities with elevated urgency even absent confirmed exploitation, based on: (1) Ivanti's repeated targeting by state-sponsored actors in 2026, (2) the availability of mature public exploit frameworks for Java/.NET deserialization (CWE-502), (3) the direct applicability of credential-chaining techniques documented in prior Ivanti campaigns, and (4) the criticality of the affected products — MDM infrastructure, IT service management backends, and secure gateway appliances — as enterprise trust anchors. Defenders should immediately inventory all Ivanti EPMM, Sentry, and Neurons for ITSM deployments, apply available patches, and audit for signs of prior compromise using established CISA and Mandiant detection guidance.

MITRE ATT&CK techniques used in TL-2026-2396

Credential Access

T1003 OS Credential Dumping; T1552 Unsecured Credentials

Lateral Movement

T1021 Remote Services

Discovery

T1046 Network Service Discovery; T1087 Account Discovery

Execution

T1059 Command and Scripting Interpreter

Command and Control

T1071 Application Layer Protocol; T1090 Proxy; T1573 Encrypted Channel

Initial Access

T1133 External Remote Services; T1190 Exploit Public-Facing Application

Persistence

T1505 Server Software Component

Affected products and versions in Ivanti September 2026 Patch Batch

  • Ivanti — Endpoint Manager Mobile (EPMM)
    Vulnerable versions: 12.9.0.1 and earlier; 12.8.0.3 and earlier
    Fixed in: 12.10.0.0; 12.9.0.2; 12.8.0.4
  • Ivanti — Neurons for ITSM (on-premises)
    Vulnerable versions: 2025.2; 2025.3; 2025.4; 2026.0; 2026.1
    Fixed in: 2026.2 (on-premises, shipping September 21, 2026); Cloud/SaaS patched August 9, 2026
  • Ivanti — Sentry
    Vulnerable versions: R10.8.1 and earlier; R10.7.2 and earlier; R10.6.3 and earlier
    Fixed in: R10.8.2; R10.7.3; R10.6.4

Remediation for Ivanti September 2026 Patch Batch

Patches

  • EPMM: Upgrade to version 12.10.0.0 (or 12.9.0.2 / 12.8.0.4 for legacy deployments)
  • Sentry: Upgrade to version R10.8.2 (or R10.7.3 / R10.6.4)
  • Neurons for ITSM on-premises: Upgrade to version 2026.2 (available September 21, 2026)

Immediate actions

  • Identify and patch all internet-exposed Ivanti EPMM instances to version 12.10.0.0, 12.9.0.2, or 12.8.0.4
  • Update Ivanti Sentry to R10.8.2, R10.7.3, or R10.6.4
  • Apply Ivanti Neurons for ITSM on-premises 2026.2 patch when released (September 21, 2026)
  • Audit all Ivanti products for indicators of compromise from prior exploitation campaigns using CISA AR25-261A detection guidance
  • Restrict network access to all Ivanti management interfaces to trusted IP ranges only

Workarounds

  • Restrict access to Ivanti management web interfaces via perimeter firewall rules and VPN-only access
  • Disable unnecessary API endpoints on EPMM and Sentry where possible
  • Implement multi-factor authentication for all administrative access to all Ivanti products
  • Monitor for malicious HTTP requests targeting /mifs/rs/api/v2/ and similar reconnaissance endpoints
  • Disable deserialization interfaces on Neurons for ITSM where not required by business function

Longer-term hardening

  • Rotate all administrative credentials for Ivanti products (credential chaining between products documented in prior incidents)
  • Implement network segmentation isolating Ivanti management products from general enterprise networks
  • Deploy endpoint detection and response (EDR) with behavioral detection on Ivanti appliance servers
  • Enable comprehensive logging on all Ivanti appliances and forward to SIEM/SOAR platform
  • Establish Ivanti-specific threat monitoring feed and automated alerting for anomalous administrative actions
  • Review and restrict API access to Ivanti management endpoints to least-privilege model

CVEs associated with Ivanti September 2026 Patch Batch

CVE-2026-18851, CVE-2026-12744, CVE-2026-12745, CVE-2026-12645, CVE-2026-12646, CVE-2026-12647, CVE-2026-12648, CVE-2026-12650, CVE-2026-12651, CVE-2026-83527

Weaknesses (CWE) in Ivanti September 2026 Patch Batch

CWE-502, CWE-862, CWE-288

Timeline of Ivanti September 2026 Patch Batch

  • UNC5221 China-nexus APT exploited CVE-2026-1281/CVE-2026-1340 as zero-days against Ivanti EPMM (CVSS 9.8 pre-auth RCE), initiating an extended credential-harvesting campaign across Ivanti infrastructure
  • Ivanti May 2026 security update warns of credential chaining: attackers using admin credentials harvested from January zero-day breaches to compromise additional Ivanti appliances with high confidence
  • Ivanti June 2026 security update: CVE-2026-10520 (Sentry pre-auth RCE as root, CVSS 10.0) added to CISA KEV on June 11; CVE-2026-10523 (Sentry authentication bypass, CVSS 9.9) also disclosed — mass scanning observed within days of PoC publication
  • Ivanti silently patches Neurons for ITSM cloud/SaaS instances against the 8 CVEs later disclosed in September; no customer action required for SaaS tenants
  • Ivanti releases patches: EPMM 12.10.0.0, 12.9.0.2, 12.8.0.4; Sentry R10.8.2, R10.7.3, R10.6.4; Neurons for ITSM on-premises 2026.2 scheduled for September 21, 2026
  • CISA KEV review finds no confirmed active exploitation of the 10 disclosed CVEs prior to public disclosure; historical pattern suggests attackers may weaponize within days to weeks
  • Ivanti reports that the eight ITSM vulnerabilities were discovered using advanced large language models integrated into its product security process, marking a novel AI-assisted vulnerability discovery methodology
  • Ivanti publicly discloses 10 vulnerabilities across EPMM (1), Neurons for ITSM (8), and Sentry (1) in its September 2026 security update

Sources cited for Ivanti September 2026 Patch Batch

More in vulnerability

Detection coverage for TL-2026-2396

As of 2026-09-08, Threadlinqs Intelligence publishes 9 detection rule(s) for TL-2026-2396 across Splunk SPL, Microsoft KQL and Sigma, covering 11 indicator(s) of compromise. The whole corpus is readable without an account; a free account unlocks full detection query text in Splunk SPL, Microsoft KQL and Sigma; paid tiers add raw indicator values, correlation and the MCP server. Threadlinqs MCP server · View plans.

Further reading

Threadlinqs Intelligence — Real-Time Threat Detection Platform

[ 0 threats ] [ 0 det ] [ CRIT: 0 ] [ HIGH: 0 ]
// threat_feed
$ sort --newest
Showing all threats

Latest Threats