CVE Published: 31/01/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: jpcert |
Vendor: Fuji Xerox Co.,Ltd. |
Product: AWMS Mobile App Status : PUBLISHED
CVE-2020-5526 Description
The AWMS Mobile App for Android 2.0.0 to 2.0.5 and for iOS 2.0.0 to 2.0.8 does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.