CVE-2020-4099

Severity CVSS v4.0:
Pending analysis
Type:
CWE-326 Inadequate Encryption Strength
Publication date:
01/11/2022
Last modified:
03/11/2022

Description

The application was signed using a key length less than or equal to 1024 bits, making it potentially vulnerable to forged digital signatures. An attacker could forge the same digital signature of the app after maliciously modifying the app.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hcltech:verse:*:*:*:*:*:android:*:* 12.0.15 (excluding)