Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 does not validate the peer certificate when obtaining an update, which could allow remote attackers to distribute malicious updates to clients.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Class_5_enterprise_vulnerability_management | Secure_elements | 2.8.0 (including) | 2.8.0 (including) |