Vulnerabilities > Mobileiron > Virtual Smartphone Platform > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-01-08 CVE-2014-1409 XML Injection (aka Blind XPath Injection) vulnerability in Mobileiron Sentry and Virtual Smartphone Platform
MobileIron VSP versions prior to 5.9.1 and Sentry versions prior to 5.0 have an authentication bypass vulnerability due to an XML file with obfuscated passwords
network
low complexity
mobileiron CWE-91
6.4