Опубликовано: 23 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.5
CVSS3: 7.4
Описание
ECOVACS HOME mobile app plugins for specific robots do not properly validate TLS certificates. An unauthenticated attacker can read or modify TLS traffic and obtain authentication tokens.
ECOVACS HOME mobile app plugins for specific robots do not properly validate TLS certificates. An unauthenticated attacker can read or modify TLS traffic and obtain authentication tokens.
Связанные уязвимости
CVSS3: 7.4
nvd
около 1 года назад
ECOVACS HOME mobile app plugins for specific robots do not properly validate TLS certificates. An unauthenticated attacker can read or modify TLS traffic and obtain authentication tokens.