CVE-2024-52329 - CERT CVE
ID CVE-2024-52329
Sažetak ECOVACS HOME mobile app plugins for specific robots do not properly validate TLS certificates. An unauthenticated attacker can read or modify TLS traffic and obtain authentication tokens.
Reference
CVSS
Base: 7.4
Impact: 5.2
Exploitability:2.2
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH NONE
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Zadnje važnije ažuriranje 23-01-2025 - 17:15
Objavljeno 23-01-2025 - 17:15