Symmetric encryption used to protect messages between the AppsAnywhere server and client can be broken by reverse engineering the client and used to impersonate the AppsAnywhere server.
                
            References
                    | Link | Resource | 
|---|---|
| https://docs.appsanywhere.com/appsanywhere/3.1/2023-11-security-advisory | Vendor Advisory | 
| https://docs.appsanywhere.com/appsanywhere/3.1/2023-11-security-advisory | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
History
                    21 Nov 2024, 08:20
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://docs.appsanywhere.com/appsanywhere/3.1/2023-11-security-advisory - Vendor Advisory | |
| CVSS | v2 : v3 : | v2 : unknown v3 : 8.0 | 
18 Nov 2023, 00:12
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:appsanywhere:appsanywhere_client:2.0.0:*:*:*:*:macos:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.4.0:*:*:*:*:windows:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:2.0.0:*:*:*:*:windows:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.6.0:*:*:*:*:windows:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.6.0:*:*:*:*:macos:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.4.1:*:*:*:*:macos:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.4.0:*:*:*:*:macos:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.5.2:*:*:*:*:macos:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.4.1:*:*:*:*:windows:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.5.1:*:*:*:*:windows:*:* cpe:2.3:a:appsanywhere:appsanywhere_client:1.5.1:*:*:*:*:macos:*:* | |
| First Time | Appsanywhere appsanywhere Client Appsanywhere | |
| References | () https://docs.appsanywhere.com/appsanywhere/3.1/2023-11-security-advisory - Vendor Advisory | |
| CVSS | v2 : v3 : | v2 : unknown v3 : 9.8 | 
| CWE | CWE-798 | 
09 Nov 2023, 15:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2023-11-09 15:15
Updated : 2024-11-21 08:20
NVD link : CVE-2023-41137
Mitre link : CVE-2023-41137
CVE.ORG link : CVE-2023-41137
JSON object : View
Products Affected
                appsanywhere
- appsanywhere_client
