CVE-2023-3897

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/07/2023
Last modified:
13/02/2025

Description

Username enumeration is possible through Bypassing CAPTCHA in On-premise SureMDM Solution on Windows deployment allows attacker to enumerate local user information via error message.<br /> <br /> This issue affects SureMDM On-premise: 6.31 and below version

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:42gears:suremdm:*:*:*:*:on-premise:*:*:* 6.31 (including)