A vulnerability was found in HTC One/Sense 4.x. It has been rated as problematic. Affected by this issue is the certification validation of the mail client. An exploit has been disclosed to the public and may be used.
The product does not validate, or incorrectly validates, a certificate.
Link | Tags |
---|---|
http://www.modzero.ch/modlog/archives/2013/05/28/htcs_e-mail_client_fails_to_verify_server_certificates/ | third party advisory |
https://vuldb.com/?id.8900 | permissions required third party advisory |