VYPR
Medium severity5.3NVD Advisory· Published Mar 29, 2021· Updated Jun 17, 2026

CVE-2021-3391

CVE-2021-3391

Description

MobileIron Mobile@Work through 2021-03-22 allows attackers to distinguish among valid, disabled, and nonexistent user accounts by observing the number of failed login attempts needed to produce a Lockout error message

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Mobileiron/Mobile\@workllm-fuzzy4 versions
    (expand)+ 3 more
    • (no CPE)
    • (no CPE)
    • cpe:2.3:a:mobileiron:mobile\@work:*:*:*:*:*:android:*:*range: <=11.0.0.0.115r
    • cpe:2.3:a:mobileiron:mobile\@work:*:*:*:*:*:iphone_os:*:*range: <=12.11.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.