42gears

Suremdm

6 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.82%
  • Published 25.07.2023 09:15:11
  • Last modified 13.02.2025 17:16:59

Username enumeration is possible through Bypassing CAPTCHA in On-premise SureMDM Solution on Windows deployment allows attacker to enumerate local user information via error message. This issue affects SureMDM On-premise: 6.31 and below version

Exploit
  • EPSS 0.33%
  • Published 05.02.2019 03:29:00
  • Last modified 21.11.2024 03:51:12

An issue was discovered in 42Gears SureMDM before 2018-11-27, related to CORS settings. Cross-origin access is possible.

Exploit
  • EPSS 0.32%
  • Published 05.02.2019 03:29:00
  • Last modified 21.11.2024 03:51:13

An issue was discovered in the registration API endpoint in 42Gears SureMDM before 2018-11-27. An attacker can submit a GET request to /api/register/:email, where :email is a base64 encoded e-mail address, to receive confirmation as to whether a user...

Exploit
  • EPSS 7.18%
  • Published 05.02.2019 03:29:00
  • Last modified 21.11.2024 03:51:13

An SSRF issue was discovered in 42Gears SureMDM before 2018-11-27 via the /api/DownloadUrlResponse.ashx "url" parameter.

Exploit
  • EPSS 0.8%
  • Published 05.02.2019 03:29:00
  • Last modified 21.11.2024 03:51:13

An issue was discovered in 42Gears SureMDM before 2018-11-27. By visiting the page found at /console/ConsolePage/Master.html, an attacker is able to see the markup that would be presented to an authenticated user. This is caused by the session valida...

Exploit
  • EPSS 0.33%
  • Published 05.02.2019 03:29:00
  • Last modified 21.11.2024 03:51:13

An issue was discovered in 42Gears SureMDM before 2018-11-27, related to the access policy for Silverlight applications. Cross-origin access is possible.