Unverified X.509 Certificates in netprint App for iOS 3.2.3 and Earlier Allow Man-in-the-Middle Attacks

Unverified X.509 Certificates in netprint App for iOS 3.2.3 and Earlier Allow Man-in-the-Middle Attacks

CVE-2020-5520 · HIGH Severity

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

The netprint App for iOS 3.2.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Learn more about our Cis Benchmark Audit For Apple Ios.