CVE-2021-3898

Versions of Motorola Ready For and Motorola Device Help Android applications prior to 2021-04-08 do not properly verify the server certificate which could lead to the communication channel being accessible by an attacker.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:motorola:device_help:*:*:*:*:*:android:*:*
cpe:2.3:a:motorola:ready_for:*:*:*:*:*:android:*:*

History

21 Nov 2024, 06:22

Type Values Removed Values Added
References () https://support.lenovo.com/us/en/product_security/LEN-58311 - Third Party Advisory () https://support.lenovo.com/us/en/product_security/LEN-58311 - Third Party Advisory
CVSS v2 : 4.3
v3 : 6.5
v2 : 4.3
v3 : 6.8

Information

Published : 2022-04-22 21:15

Updated : 2024-11-21 06:22


NVD link : CVE-2021-3898

Mitre link : CVE-2021-3898

CVE.ORG link : CVE-2021-3898


JSON object : View

Products Affected

motorola

  • device_help
  • ready_for
CWE
CWE-295

Improper Certificate Validation