Описание
A Man-in-the-Middle issue was discovered in General Motors (GM) and Shanghai OnStar (SOS) SOS iOS Client 7.1. Successful exploitation of this vulnerability may allow an attacker to intercept sensitive information when the client connects to the server.
Ссылки
- Third Party AdvisoryVDB Entry
- MitigationThird Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- MitigationThird Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:gm:shanghai_onstar:7.1:*:*:*:*:iphone_os:*:*
EPSS
Процентиль: 40%
0.00186
Низкий
5.9 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-300
CWE-200
Связанные уязвимости
CVSS3: 5.9
github
больше 3 лет назад
A Man-in-the-Middle issue was discovered in General Motors (GM) and Shanghai OnStar (SOS) SOS iOS Client 7.1. Successful exploitation of this vulnerability may allow an attacker to intercept sensitive information when the client connects to the server.
EPSS
Процентиль: 40%
0.00186
Низкий
5.9 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-300
CWE-200