CVE-2014-5646: Medium severity IObit Amc Security Antivirus Clean Android vulnerability
The AMC Security- Antivirus, Clean (aka com.iobit.mobilecare) application 4.4.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5646?
CVE-2014-5646 is considered a high severity vulnerability due to its potential for exploitation by man-in-the-middle attacks.
How do I fix CVE-2014-5646?
To fix CVE-2014-5646, update the AMC Security application to a version that correctly verifies X.509 certificates.
What type of vulnerability is CVE-2014-5646?
CVE-2014-5646 is a certificate validation vulnerability that affects SSL connections.
What applications are affected by CVE-2014-5646?
CVE-2014-5646 affects the IObit AMC Security Antivirus Clean application version 4.4.1 for Android.
Can CVE-2014-5646 lead to data theft?
Yes, CVE-2014-5646 can potentially allow attackers to spoof servers and capture sensitive information.