Skip to main content

Vendor/product archive

42gears / suremdm CVEs

Beta · best-effort

6 CVEs tagged to 42gears / suremdm0 Critical, 3 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2023-3897

Published Jul 25, 2023

Username enumeration is possible through Bypassing CAPTCHA in On-premise SureMDM Solution on Windows deployment allows attacker to enumerate local user information via error messa…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-15659

Published Feb 5, 2019

An issue was discovered in 42Gears SureMDM before 2018-11-27, related to the access policy for Silverlight applications. Cross-origin access is possible.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-15658

Published Feb 5, 2019

An issue was discovered in 42Gears SureMDM before 2018-11-27. By visiting the page found at /console/ConsolePage/Master.html, an attacker is able to see the markup that would be p…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-15657

Published Feb 5, 2019

An SSRF issue was discovered in 42Gears SureMDM before 2018-11-27 via the /api/DownloadUrlResponse.ashx "url" parameter.

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2018-15656

Published Feb 5, 2019

An issue was discovered in the registration API endpoint in 42Gears SureMDM before 2018-11-27. An attacker can submit a GET request to /api/register/:email, where :email is a base…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-15655

Published Feb 5, 2019

An issue was discovered in 42Gears SureMDM before 2018-11-27, related to CORS settings. Cross-origin access is possible.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1