Lucene search

K
cvelistJpcertCVELIST:CVE-2021-20732
HistoryJun 09, 2021 - 1:05 a.m.

CVE-2021-20732

2021-06-0901:05:25
jpcert
www.cve.org
3
atom smart life
server certificate
man-in-the-middle

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

33.2%

The ATOM (ATOM - Smart life App for Android versions prior to 1.8.1 and ATOM - Smart life App for iOS versions prior to 1.8.2) does not verify server certificate properly, which allows man-in-the-middle attackers to eavesdrop on encrypted communication via a crafted certificate.

CNA Affected

[
  {
    "product": "ATOM",
    "vendor": "ATOM tech Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "ATOM - Smart life App for Android versions prior to 1.8.1 and ATOM - Smart life App for iOS versions prior to 1.8.2"
      }
    ]
  }
]

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

33.2%

Related for CVELIST:CVE-2021-20732