Описание
Versions of Motorola Ready For and Motorola Device Help Android applications prior to 2021-04-08 do not properly verify the server certificate which could lead to the communication channel being accessible by an attacker.
Ссылки
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2021-04-08 (исключая)Версия до 2021-04-08 (исключая)
Одно из
cpe:2.3:a:motorola:device_help:*:*:*:*:*:android:*:*
cpe:2.3:a:motorola:ready_for:*:*:*:*:*:android:*:*
EPSS
Процентиль: 32%
0.00126
Низкий
6.8 Medium
CVSS3
6.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-295
CWE-295
Связанные уязвимости
CVSS3: 6.5
github
почти 4 года назад
Versions of Motorola Ready For and Motorola Device Help Android applications prior to 2021-04-08 do not properly verify the server certificate which could lead to the communication channel being accessible by an attacker.
EPSS
Процентиль: 32%
0.00126
Низкий
6.8 Medium
CVSS3
6.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-295
CWE-295