CVE-2020-5520

The netprint App for iOS 3.2.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Configurations

Configuration 1 (hide)

cpe:2.3:a:fujixerox:netprint:*:*:*:*:*:iphone_os:*:*

History

21 Nov 2024, 05:34

Type Values Removed Values Added
References () http://jvn.jp/en/jp/JVN66435380/index.html - Third Party Advisory () http://jvn.jp/en/jp/JVN66435380/index.html - Third Party Advisory
References () https://www.printing.ne.jp/support/information/AppVulnerability.html - Third Party Advisory () https://www.printing.ne.jp/support/information/AppVulnerability.html - Third Party Advisory

Information

Published : 2020-01-27 10:15

Updated : 2024-11-21 05:34


NVD link : CVE-2020-5520

Mitre link : CVE-2020-5520

CVE.ORG link : CVE-2020-5520


JSON object : View

Products Affected

fujixerox

  • netprint
CWE
CWE-295

Improper Certificate Validation