Описание
MobileIron VSP versions prior to 5.9.1 and Sentry versions prior to 5.0 have an authentication bypass vulnerability due to an XML file with obfuscated passwords
Ссылки
- ExploitMailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 5.9.1 (исключая)
cpe:2.3:a:mobileiron:virtual_smartphone_platform:*:*:*:*:*:*:*:*
Конфигурация 2Версия до 5.0 (исключая)
cpe:2.3:a:mobileiron:sentry:*:*:*:*:*:*:*:*
EPSS
Процентиль: 44%
0.00217
Низкий
9.1 Critical
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-91
Связанные уязвимости
github
больше 3 лет назад
MobileIron VSP versions prior to 5.9.1 and Sentry versions prior to 5.0 have an authentication bypass vulnerability due to an XML file with obfuscated passwords
EPSS
Процентиль: 44%
0.00217
Низкий
9.1 Critical
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-91