CVE Details
Basic Information
| Title |
CVE-2025-1416 Password disclosure in Proget MDM |
| Type |
cve |
| Published |
2025-05-21T13:03:07 |
| Last Seen |
2025-05-21T14:29:40 |
CVSS Information
| Base Score |
0.0 () |
| Attack Vector |
|
| Attack Complexity |
|
| Privileges Required |
|
| User Interaction |
|
| Scope |
|
| Confidentiality Impact |
|
| Integrity Impact |
|
| Availability Impact |
|
AI Analysis
| AI Description |
A vulnerability in Proget MDM allows low-privileged users to retrieve passwords for managed devices, potentially accessing restricted functionalities. This could lead to unauthorized access and misuse of device management features. |
| AI Severity |
High |
| Vendor |
Proget |
| Product |
Proget MDM |
| Affected Version |
Not specified |
Additional Information
| CVE List |
CVE-2025-1415, CVE-2025-1416, CVE-2025-1417 |
| CWE List |
CWE-863 |
| Bulletin Family |
cve |
Description
In Proget MDM, a low-privileged user can retrieve passwords for managed devices and subsequently use functionalities restricted by the MDM (Mobile Device Management). For it to happen, they must know the UUIDs of targetted…
CVSS Score Summary
Base Score: %!f(string=#) ()
View Full CVE Details