CVE-2023-3897

Username enumeration is possible through Bypassing CAPTCHA in On-premise SureMDM Solution on Windows deployment allows attacker to enumerate local user information via error message. This issue affects SureMDM On-premise: 6.31 and below versionĀ 
References
Link Resource
https://www.42gears.com/security-and-compliance Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:42gears:suremdm:*:*:*:*:on-premise:*:*:*

Information

Published : 2023-07-25 09:15

Updated : 2023-08-02 03:52


NVD link : CVE-2023-3897

Mitre link : CVE-2023-3897


JSON object : View

Products Affected

42gears

  • suremdm
CWE
CWE-203

Observable Discrepancy