A security vulnerability in MICS Admin Portal in Ivanti MobileIron Sentry versions 9.18.0 and below, which may allow an attacker to bypass authentication controls on the administrative interface due to an insufficiently restrictive Apache HTTPD configuration.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 21 Oct 2025 23:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Tue, 21 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Tue, 21 Oct 2025 19:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Wed, 30 Jul 2025 02:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Thu, 13 Feb 2025 17:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A security vulnerability in MICS Admin Portal in Ivanti MobileIron Sentry versions 9.18.0 and below, which may allow an attacker to bypass authentication controls on the administrative interface due to an insufficiently restrictive Apache HTTPD configuration. | A security vulnerability in MICS Admin Portal in Ivanti MobileIron Sentry versions 9.18.0 and below, which may allow an attacker to bypass authentication controls on the administrative interface due to an insufficiently restrictive Apache HTTPD configuration. | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: hackerone
Published: 2023-08-21T16:51:20.678Z
Updated: 2025-10-21T23:05:40.307Z
Reserved: 2023-07-12T01:00:11.880Z
Link: CVE-2023-38035
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T17:30:12.367Z
 NVD
                        NVD
                    Status : Modified
Published: 2023-08-21T17:15:47.457
Modified: 2025-10-21T23:16:07.037
Link: CVE-2023-38035
 Redhat
                        Redhat
                    No data.