Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jf48-446q-8cg5

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Acer Portal app before 3.9.4.2000 for Android does not properly validate SSL certificates, which allows remote attackers to perform a Man-in-the-middle attack via a crafted SSL certificate.

Acer Portal app before 3.9.4.2000 for Android does not properly validate SSL certificates, which allows remote attackers to perform a Man-in-the-middle attack via a crafted SSL certificate.

EPSS

Процентиль: 80%
0.01335
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 5.3
nvd
больше 8 лет назад

Acer Portal app before 3.9.4.2000 for Android does not properly validate SSL certificates, which allows remote attackers to perform a Man-in-the-middle attack via a crafted SSL certificate.

EPSS

Процентиль: 80%
0.01335
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-295