CVE Vulnerabilities

CVE-2023-38009

Improper Certificate Validation

Published: Jan 26, 2025 | Modified: Jan 26, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

IBM Cognos Mobile Client 1.1 iOS may be vulnerable to information disclosure through man in the middle techniques due to the lack of certificate pinning.

Weakness

The product does not validate, or incorrectly validates, a certificate.

Potential Mitigations

References