← Back

CVE-2020-15505

Published: Jul 7, 2020Modified: Jun 17, 2026CISA KEV

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

A remote code execution vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0; and Sentry versions 9.7.2 and earlier, and 9.8.0; and Monitor and Reporting Database (RDB) version 2.0.0.1 and earlier that allows remote attackers to execute arbitrary code via unspecified vectors.

Affected (13)

4 products
Core
Enterprise Connector
Monitor And Reporting Database
Sentry
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Mobileiron
Before 10.3.0.4
From 10.4.0.0 to 10.4.0.4
From 10.5.1.0 to 10.5.1.1
From 10.5.2.0 to 10.5.2.1
From 10.6.0.0 to 10.6.0.1
Mobileiron
Before 10.3.0.4
From 10.4.0.0 to 10.4.0.4
From 10.5.1.0 to 10.5.1.1
From 10.5.2.0 to 10.5.2.1
From 10.6.0.0 to 10.6.0.1
Before 2.0.0.2
Mobileiron
From 9.7.0 to 9.7.3
From 9.8.0 to 9.8.1

References (15)

Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
US Government Resource

Timeline

No history available yet.