Tonec Internet Download Manager 6.42.41.1 and earlier suffers from Missing SSL Certificate Validation, which allows attackers to bypass update protections.
Weakness
The product does not validate, or incorrectly validates, a certificate.
Potential Mitigations
References