VYPR

Sentry

by Mobileiron

CVEs (6)

  • CVE-2020-15505CriKEVJul 7, 2020
    risk 0.87cvss 9.8epss 1.00

    A remote code execution vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0; and Sentry versions 9.7.2 and earlier, and 9.8.0; and Monitor and Reporting Database (RDB) version 2.0.0.1…

  • CVE-2020-15506CriJul 7, 2020
    risk 0.64cvss 9.8epss 0.03

    An authentication bypass vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0 that allows remote attackers to bypass authentication mechanisms via unspecified vectors.

  • CVE-2013-7287CriFeb 13, 2020
    risk 0.64cvss 9.8epss 0.01

    MobileIron VSP < 5.9.1 and Sentry < 5.0 has an insecure encryption scheme.

  • CVE-2014-1409CriJan 8, 2020
    risk 0.59cvss 9.1epss 0.04

    MobileIron VSP versions prior to 5.9.1 and Sentry versions prior to 5.0 have an authentication bypass vulnerability due to an XML file with obfuscated passwords

  • CVE-2020-15507HigJul 7, 2020
    risk 0.49cvss 7.5epss 0.02

    An arbitrary file reading vulnerability in MobileIron Core versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0 that allows remote attackers to read files on the system via unspecified vectors.

  • CVE-2013-7286HigFeb 12, 2020
    risk 0.49cvss 7.5epss 0.01

    MobileIron VSP < 5.9.1 and Sentry < 5.0 has a weak password obfuscation algorithm