Описание
An improper certificate validation vulnerability was reported in the Lenovo Universal Device Client (UDC) that could allow a user capable of intercepting network traffic to obtain application metadata, including device information, geolocation, and telemetry data.
EPSS
Процентиль: 2%
0.00013
Низкий
3.1 Low
CVSS3
Дефекты
CWE-295
Связанные уязвимости
CVSS3: 3.1
github
4 месяца назад
An improper certificate validation vulnerability was reported in the Lenovo Universal Device Client (UDC) that could allow a user capable of intercepting network traffic to obtain encrypted application metadata, including device information, geolocation, and telemetry data.
EPSS
Процентиль: 2%
0.00013
Низкий
3.1 Low
CVSS3
Дефекты
CWE-295