3 ms·
Ivanti Sentry pre-auth RCE (CVE-2026-10520) – CVSS 10.0, public PoC, CISA KEV
- Chu4eeno 4mo agoThe original article, with the PoC, was both funnier and didn't feel like it was written by an LLM (though the sign-off almost seem to be parodying some chatgpt-ism): https://labs.watchtowr.com/more-evidence-that-words-dont-mean-what-we-thought-they-meant-ivanti-sentry-pre-auth-os-command-injection-cve-2026-10520/ https://labs.watchtowr.com/more-evidence-that-words-dont-mea...
- slvnx 4mo agoAuthor here - I liked the watchTowr article too, that’s why it’s linked. And yes, sadly, not every CVE writeup comes with cat pictures. Mine is for a different audience: a 5-minute summary of the important bits, with links to the deeper research/PoC for people who need the full context. Thanks for checking it out!