Description
Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) attack and replace original language pack by malicious one.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-17680 | Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) attack and replace original language pack by malicious one. |
References
History
No history.
Status: PUBLISHED
Assigner: Kaspersky
Published:
Updated: 2024-08-04T21:17:31.269Z
Reserved: 2019-02-12T00:00:00.000Z
Link: CVE-2019-8282
No data.
Status : Modified
Published: 2019-06-07T15:29:01.827
Modified: 2024-11-21T04:49:38.553
Link: CVE-2019-8282
No data.
OpenCVE Enrichment
No data.
EUVD