Kony Management (aka Enterprise Mobile Management or EMM) 1.2 and earlier allows remote authenticated users to read (1) arbitrary messages via the messageId parameter to selfservice/managedevice/getMessageBody or (2) requests via the requestId parameter to selfservice/devicemgmt/getDeviceInfoTab.htm.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2015-02-24T15:00:00

Updated: 2024-08-06T13:18:48.483Z

Reserved: 2014-10-26T00:00:00

Link: CVE-2014-8487

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2015-02-24T15:59:01.317

Modified: 2025-04-12T10:46:40.837

Link: CVE-2014-8487

cve-icon Redhat

No data.