CVE-2021-3460

Severity CVSS v4.0:
Pending analysis
Type:
CWE-295 Improper Certificate Validation
Publication date:
13/04/2021
Last modified:
21/04/2021

Description

The Motorola MH702x devices, prior to version 2.0.0.301, do not properly verify the server certificate during communication with the support server which could lead to the communication channel being accessible by an attacker.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:motorola:mh702x_firmware:*:*:*:*:*:*:*:* 2.0.0.301 (excluding)
cpe:2.3:h:motorola:mh702x:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools