CVE-2016-7816
CVE-2016-7816
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
09 Jun 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
The Cybozu kintone mobile for Android 1.0.6 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Affected products
Cybozu, Inc. · kintone mobile for AndroidWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →