CVE-2014-7019: Medium severity blynk clarks inn vulnerability
Published Oct 16, 2014
·Updated
The Clarks Inn (aka com.ClarksInn) application 3.3.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Affected Software
1 affected component
Blynk Clarks Inn Android=3.3.0
Event History
Oct 16, 2014
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-7019?
CVE-2014-7019 is considered a high severity vulnerability due to its potential to allow man-in-the-middle attacks.
2
How do I fix CVE-2014-7019?
To mitigate CVE-2014-7019, update the Clarks Inn application to a version that properly verifies X.509 certificates.
3
What type of attack is possible due to CVE-2014-7019?
CVE-2014-7019 allows an attacker to conduct man-in-the-middle attacks, potentially exposing sensitive information.
4
Which version of the Clarks Inn application is affected by CVE-2014-7019?
CVE-2014-7019 affects version 3.3.0 of the Clarks Inn application.
5
What platforms are impacted by CVE-2014-7019?
CVE-2014-7019 specifically impacts the Android platform.