A security vulnerability has been identified in EPMM Versions 11.10, 11.9 and 11.8 and older allowing an unauthenticated threat actor to impersonate any existing user during the device enrollment process. This issue poses a significant security risk, as it enables unauthorized access and potential misuse of user accounts and resources.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: hackerone

Published: 2023-11-14T23:18:08.402Z

Updated: 2023-11-14T23:18:08.402Z

Reserved: 2023-07-28T01:00:12.350Z


Link: CVE-2023-39335

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-11-15T00:15:08.390

Modified: 2023-11-22T15:06:41.970


Link: CVE-2023-39335

JSON object: View

cve-icon Redhat Information

No data.