CVE-2020-15505
Ivanti MobileIron Multiple Products Remote Code Execution Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
YesDecision
Descriptions
A remote code execution vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0; and Sentry versions 9.7.2 and earlier, and 9.8.0; and Monitor and Reporting Database (RDB) version 2.0.0.1 and earlier that allows remote attackers to execute arbitrary code via unspecified vectors.
Se presenta una vulnerabilidad de ejecución de código remoto en las versiones 10.3.0.3 y anteriores del MobileIron Core y Connector, versiones 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 y 10.6.0.0; y las versiones 9 del Sentry. 7.2 y anteriores, y versiones 9.8.0; y Monitor and Reporting Database (RDB) versión 2.0.0.1 y anteriores que permite a los atacantes remotos ejecutar código arbitrario a través de vectores no especificados
Ivanti MobileIron's Core & Connector, Sentry, and Monitor and Reporting Database (RDB) products contain an unspecified vulnerability that allows for remote code execution.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-07-02 CVE Reserved
- 2020-07-07 CVE Published
- 2021-11-03 Exploited in Wild
- 2022-05-03 KEV Due Date
- 2024-06-30 EPSS Updated
- 2024-08-04 CVE Updated
- 2024-08-04 First Exploit
CWE
- CWE-706: Use of Incorrectly-Resolved Name or Reference
CAPEC
References (6)
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.mobileiron.com/en/blog/mobileiron-security-updates-available | 2020-09-12 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Mobileiron Search vendor "Mobileiron" | Core Search vendor "Mobileiron" for product "Core" | < 10.3.0.4 Search vendor "Mobileiron" for product "Core" and version " < 10.3.0.4" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Core Search vendor "Mobileiron" for product "Core" | >= 10.4.0.0 < 10.4.0.4 Search vendor "Mobileiron" for product "Core" and version " >= 10.4.0.0 < 10.4.0.4" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Core Search vendor "Mobileiron" for product "Core" | >= 10.5.1.0 < 10.5.1.1 Search vendor "Mobileiron" for product "Core" and version " >= 10.5.1.0 < 10.5.1.1" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Core Search vendor "Mobileiron" for product "Core" | >= 10.5.2.0 < 10.5.2.1 Search vendor "Mobileiron" for product "Core" and version " >= 10.5.2.0 < 10.5.2.1" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Core Search vendor "Mobileiron" for product "Core" | >= 10.6.0.0 < 10.6.0.1 Search vendor "Mobileiron" for product "Core" and version " >= 10.6.0.0 < 10.6.0.1" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Enterprise Connector Search vendor "Mobileiron" for product "Enterprise Connector" | < 10.3.0.4 Search vendor "Mobileiron" for product "Enterprise Connector" and version " < 10.3.0.4" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Enterprise Connector Search vendor "Mobileiron" for product "Enterprise Connector" | >= 10.4.0.0 < 10.4.0.4 Search vendor "Mobileiron" for product "Enterprise Connector" and version " >= 10.4.0.0 < 10.4.0.4" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Enterprise Connector Search vendor "Mobileiron" for product "Enterprise Connector" | >= 10.5.1.0 < 10.5.1.1 Search vendor "Mobileiron" for product "Enterprise Connector" and version " >= 10.5.1.0 < 10.5.1.1" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Enterprise Connector Search vendor "Mobileiron" for product "Enterprise Connector" | >= 10.5.2.0 < 10.5.2.1 Search vendor "Mobileiron" for product "Enterprise Connector" and version " >= 10.5.2.0 < 10.5.2.1" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Enterprise Connector Search vendor "Mobileiron" for product "Enterprise Connector" | >= 10.6.0.0 < 10.6.0.1 Search vendor "Mobileiron" for product "Enterprise Connector" and version " >= 10.6.0.0 < 10.6.0.1" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Monitor And Reporting Database Search vendor "Mobileiron" for product "Monitor And Reporting Database" | < 2.0.0.2 Search vendor "Mobileiron" for product "Monitor And Reporting Database" and version " < 2.0.0.2" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Sentry Search vendor "Mobileiron" for product "Sentry" | >= 9.7.0 < 9.7.3 Search vendor "Mobileiron" for product "Sentry" and version " >= 9.7.0 < 9.7.3" | - |
Affected
| ||||||
Mobileiron Search vendor "Mobileiron" | Sentry Search vendor "Mobileiron" for product "Sentry" | >= 9.8.0 < 9.8.1 Search vendor "Mobileiron" for product "Sentry" and version " >= 9.8.0 < 9.8.1" | - |
Affected
|