First published: Mon Jun 24 2019(Updated: )
The ASUS HiVivo aspplication before 5.6.27 for ASUS Watch has Missing SSL Certificate Validation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Hivivo | <5.6.27 | |
Asus Vivobaby | <1.1.09 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-17945 is considered a high severity vulnerability due to its lack of SSL certificate validation.
To fix CVE-2017-17945, update the ASUS HiVivo application to version 5.6.27 or later.
CVE-2017-17945 affects the ASUS HiVivo application before version 5.6.27 and ASUS Vivobaby application before version 1.1.09.
The implications of CVE-2017-17945 include the potential for man-in-the-middle attacks due to missing SSL certificate validation.
Users of ASUS Watch devices using the HiVivo application and parents using the Vivobaby application are affected by CVE-2017-17945.