SecurAccess
Securenvoy · 2 CVEs
CVE-2025-30236
HIGH
Shearwater SecurEnvoy SecurAccess Enrol before 9.4.515 allows authentication through only a six-digit TOTP code (skippi…
Mar 19, 2025
CVE-2025-30235
LOW
Shearwater SecurEnvoy SecurAccess Enrol before 9.4.515 is intended to disable accounts that have had more than 10 faile…
Mar 19, 2025
CVE-2018-18466
HIGH
An issue was discovered in SecurEnvoy SecurAccess 9.3.502. When put in Debug mode and used for RDP connections, the app…
Mar 18, 2019
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2025-30236 | Shearwater SecurEnvoy SecurAccess Enrol before 9.4.515 allows authentication through only a six-digit TOTP code (skipping a password check) if an HTTP POST req… | HIGH | 0.36% | Mar 19, 2025 |
| CVE-2025-30235 | Shearwater SecurEnvoy SecurAccess Enrol before 9.4.515 is intended to disable accounts that have had more than 10 failed authentication attempts, but instead a… | LOW | 0.21% | Mar 19, 2025 |
| CVE-2018-18466 | An issue was discovered in SecurEnvoy SecurAccess 9.3.502. When put in Debug mode and used for RDP connections, the application stores the emergency credential… | HIGH | 0.34% | Mar 18, 2019 |
Showing 1 to 2 of 2 CVEs