First published: Wed Feb 12 2020(Updated: )
MobileIron VSP < 5.9.1 and Sentry < 5.0 has a weak password obfuscation algorithm
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MobileIron Sentry | <5.0 | |
Mobileiron Virtual Smartphone Platform | <5.9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2013-7286.
The severity level of CVE-2013-7286 is high with a CVSS score of 7.5.
MobileIron VSP versions prior to 5.9.1 and Sentry versions prior to 5.0 are affected by CVE-2013-7286.
This vulnerability allows attackers to bypass authentication and gain unauthorized access to MobileIron VSP and Sentry systems.
To fix CVE-2013-7286, update MobileIron VSP to version 5.9.1 or later and update Sentry to version 5.0 or later.