PT-2016-4902 · Apple · Hp Software Update

Publicado

2016-03-14

·

Atualizado

2016-12-03

·

CVE-2016-1731

CVSS v3.1

5.9

Média

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Apple Software Update versions prior to 2.2 on Windows
Description The issue allows man-in-the-middle attackers to spoof updates by modifying the client-server data stream because it does not use HTTPS.
Recommendations For Apple Software Update versions prior to 2.2 on Windows, update to version 2.2 or later to resolve the issue.

Correção

Insufficient Verification of Data Authenticity

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-1731

Produtos afetados

Hp Software Update