Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-69g2-mv93-2xq7

Опубликовано: 21 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

The SolarEdge mySolarEdge application before 2.20.1 for Android has a certificate verification issue that allows a Machine-in-the-middle (MitM) attacker to read and alter all network traffic between the application and the server.

The SolarEdge mySolarEdge application before 2.20.1 for Android has a certificate verification issue that allows a Machine-in-the-middle (MitM) attacker to read and alter all network traffic between the application and the server.

EPSS

Процентиль: 19%
0.00061
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 5.9
nvd
почти 2 года назад

The SolarEdge mySolarEdge application before 2.20.1 for Android has a certificate verification issue that allows a Machine-in-the-middle (MitM) attacker to read and alter all network traffic between the application and the server.

EPSS

Процентиль: 19%
0.00061
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-125