CVE-2026-83527 PUBLISHED

Assigner: ivanti
Reserved: 31.08.2026 Published: 08.09.2026 Updated: 09.09.2026

An Authentication Bypass vulnerability in Sentry before R10.8.2, R10.7.3 and R10.6.4 allows a remote unauthenticated attacker to gain administrative level access.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Score: 8.1

Product Status

Vendor Ivanti
Product Sentry
Versions Default: affected
  • Version R10.8.2 is unaffected
  • Version R10.7.3 is unaffected
  • Version R10.6.4 is unaffected

References

Problem Types

  • CWE-288 Authentication bypass using an alternate path or channel CWE

Impacts

  • CAPEC-115 Authentication Bypass