Amazon Fire OS before 5.3.6.4 allows a man-in-the-middle attack against HTTP requests for Terms of Use and Privacy pages.
The product does not properly verify that the source of data or communication is valid.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fire_os | Amazon | * | 5.3.6.4 (excluding) |