Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-45220
HistoryOct 25, 2023 - 6:17 p.m.

Design/Logic Flaw

2023-10-2518:17:00
PRIOn knowledge base
www.prio-n.com
3
android
client application
http
https
sensitive information
configurable

8.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

21.8%

The Android Client application, when enrolled with the define method 1(the user manually inserts the server ip address), use HTTP protocol to retrieve sensitive information (ip address and credentials to connect to a remote MQTT broker entity) instead of HTTPS and this feature is not configurable by the user.

8.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

21.8%

Related for PRION:CVE-2023-45220