Vulnerabilities > Amtelco

DATE CVE VULNERABILITY TITLE RISK
2014-05-06 CVE-2014-2347 Permissions, Privileges, and Access Controls vulnerability in Amtelco Misecuremessages 6.2
Amtelco miSecureMessages (aka MSM) 6.2 does not properly manage sessions, which allows remote authenticated users to obtain sensitive information via a modified message request.
network
amtelco CWE-264
3.5
2014-04-15 CVE-2014-0357 Improper Authentication vulnerability in Amtelco Misecuremessages
Amtelco miSecureMessages allows remote attackers to read the messages of arbitrary users via an XML request containing a valid license key and a modified contactID value, as demonstrated by a request from the iOS or Android application.
network
low complexity
amtelco CWE-287
5.0