CVE-2021-20732

The ATOM (ATOM - Smart life App for Android versions prior to 1.8.1 and ATOM - Smart life App for iOS versions prior to 1.8.2) does not verify server certificate properly, which allows man-in-the-middle attackers to eavesdrop on encrypted communication via a crafted certificate.
References
Configurations

Configuration 1

cpe:2.3:a:atomtech:smart_life:*:*:*:*:*:android:*:*
cpe:2.3:a:atomtech:smart_life:*:*:*:*:*:iphone_os:*:*

Information

Published : 2021-06-09 02:15

Updated : 2021-06-17 06:08


NVD link : CVE-2021-20732

Mitre link : CVE-2021-20732

Products Affected
No products.
CWE
CWE-295

Improper Certificate Validation