CVE-2023-3897: 42gears Suremdm

Medium severity, CVSS 5.3. EPSS: 3.1% chance of exploitation in the next 30 days.

Username enumeration is possible through Bypassing CAPTCHA in On-premise SureMDM Solution on Windows deployment allows attacker to enumerate local user information via error message. This issue affects SureMDM On-premise: 6.31 and below version

Affected products

  • 42gears Suremdm: up to and including 6.31

Published 2023-07-25. Last modified 2026-06-17.