Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) attack and replace original language pack by malicious one.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Kaspersky

Published: 2019-06-07T14:21:01

Updated: 2019-06-07T14:21:01

Reserved: 2019-02-12T00:00:00


Link: CVE-2019-8282

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-06-07T15:29:01.827

Modified: 2020-10-22T17:19:11.403


Link: CVE-2019-8282

JSON object: View

cve-icon Redhat Information

No data.