Vulnerabilities (CVE)

Filtered by vendor Canonical Subscribe
Filtered by product Anbox Cloud
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-8287 1 Canonical 1 Anbox Cloud 2024-09-24 N/A 7.5 HIGH
Anbox Management Service, in versions 1.17.0 through 1.23.0, does not validate the TLS certificate provided to it by the Anbox Stream Agent. An attacker must be able to machine-in-the-middle the Anbox Stream Agent from within an internal network before they can attempt to take advantage of this.