CVE-2023-38035CISA KEVEPSS p100.0%

CVE-2023-38035Ivanti Sentry Authentication Bypass Vulnerability

Ivanti / Sentry

Description

Ivanti Sentry, formerly known as MobileIron Sentry, contains an authentication bypass vulnerability that may allow an attacker to bypass authentication controls on the administrative interface due to an insufficiently restrictive Apache HTTPD configuration.

Scoring

EPSS99.95% probability of exploitation · percentile 100.0% · 2026-06-15T12:03:41Z

CISA KEV entry

Added to KEV: 2023-08-22

(incoming)1

TypeTargetConfidenceTier
KEVEntryIvanti Sentry Authentication Bypass Vulnerabilitykev-cve-2023-380350%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Ivanti Endpoint Manager Mobile (EPMM) and MobileIron Core Authentication Bypass Vulnerability
CVE
Ivanti Endpoint Manager Mobile Authentication Bypass Vulnerability
CVE
Ivanti Connect Secure and Policy Secure Authentication Bypass Vulnerability
CVE
CVE-2026-10523
CVE
Ivanti Virtual Traffic Manager Authentication Bypass Vulnerability
CVE
Ivanti Endpoint Manager (EPM) Authentication Bypass Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.