PT-2022-19647 · Unknown · Mobaoku-Auction&Flea Market App

Okazawa Yoshihiro

·

Published

2022-06-14

·

Updated

2022-06-23

·

CVE-2022-29482

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Mobaoku-Auction&Flea Market App for iOS versions prior to 5.5.16
Description The issue is related to improper server certificate verification, which may allow an attacker to eavesdrop on encrypted communication via a man-in-the-middle attack.
Recommendations For Mobaoku-Auction&Flea Market App for iOS versions prior to 5.5.16, update to version 5.5.16 or later to resolve the issue.

Fix

Improper Certificate Validation

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-29482

Affected Products

Mobaoku-Auction&Flea Market App