CRITICAL🇵🇱 Wersja polska

CVE-2013-7287

CVSS 9.8v3.1pub. 2020-02-13upd. 2024-11-21

MobileIron VSP < 5.9.1 and Sentry < 5.0 has an insecure encryption scheme.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Mobileiron Sentry

    APP
    Mobileiron
    < 5.0
  • Mobileiron Virtual Smartphone Platform

    APP
    Mobileiron
    < 5.9.1
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2020-15505CRITICAL9.8⚠ KEVPL ✓same product

Zdalne wykonanie kodu (RCE) w MobileIron Core, Sentry i RDB

CVE-2020-15506CRITICAL9.8PL ✓same product

Authentication bypass w MobileIron Core & Connector — pominięcie uwierzytelnienia

CVE-2014-1409CRITICAL9.1PL ✓same product

MobileIron VSP i Sentry — pominięcie uwierzytelnienia przez zaciemnione hasła w XML

CVE-2020-15507HIGH7.5same product

An arbitrary file reading vulnerability in MobileIron Core versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, ...

CVE-2020-35138CRITICAL9.8PL ✓same vendor

MobileIron Mobile@Work — zakodowany klucz szyfrowania poświadczeń