CVE-2013-7287: Weak Encryption
Published Feb 13, 2020
·Updated
MobileIron VSP < 5.9.1 and Sentry < 5.0 has an insecure encryption scheme.
Affected Software
2 affected components
MobileIron Sentry<5.0
MobileIron Virtual Smartphone Platform<5.9.1
Event History
Feb 13, 2020
CVE Published
via MITRE·10:09 PM
Data Sourced
via MITRE·10:09 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this insecure encryption scheme?
The vulnerability ID for this insecure encryption scheme is CVE-2013-7287.
2
What is the severity rating for CVE-2013-7287?
CVE-2013-7287 has a severity rating of 9.8, which is considered critical.
3
What is affected by the insecure encryption scheme in MobileIron VSP and Sentry?
The insecure encryption scheme affects MobileIron VSP versions up to exclusive 5.9.1 and Sentry versions up to exclusive 5.0.
4
How can I fix the insecure encryption scheme in MobileIron VSP and Sentry?
To fix the insecure encryption scheme, update MobileIron VSP to version 5.9.1 or higher and update Sentry to version 5.0 or higher.
5
Where can I find more information about CVE-2013-7287 and the insecure encryption scheme?
You can find more information about CVE-2013-7287 and the insecure encryption scheme at the following references: [link1](http://seclists.org/fulldisclosure/2014/Apr/21) and [link2](https://www.securityfocus.com/archive/1/531713).