Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-46496: CVE-2022-46496 - Missing TLS Certificate Validation in DoorEntry HOMETOUCH for iOS

BTicino Door Entry HOMETOUCH for iOS 1.4.2 was discovered to be missing an SSL certificate.

CVE
#xss#csrf#vulnerability#web#ios#android#apple#ssl

February 06, 20231. Vulnerability Properties

Title: Missing TLS Certificate Validation in DoorEntry HOMETOUCH for iOS
CVE ID: CVE-2022-46496
CVSSv3 Base Score: 7.1 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Products: BTicino DoorEntry HOMETOUCH for iOS
Advisory Release Date: 6 February 2023
Advisory URL: https://labs.integrity.pt/advisories/cve-2022-46496
Credits: Discovery by Bruno Morisson

2. Vulnerability Summary

The application does not correctly validate TLS certs when connecting to a specific endpoint, making it possible to perform MITM attacks and obtain user login credentials.

3. Vulnerable Versions

  • < 1.5.1

4. Solution

  • Upgrade to version 1.5.1

5. Vulnerability Timeline

  • 25/Nov/22 - Vulnerability reported to vendor
  • 30/Nov/22 - Vendor acknowledged report
  • 23/Jan/23 - Version 1.5.1 with fix released
  • 05/Feb/23 - Vendor informed that new version had been released
  • 06/Feb/23 - Advisory published

6. References

  • https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-46496

CVE-2023-0642 - Cross-Site Request Forgery (CSRF) in Squidex CMS

Latest Advisories

  • CVE-2022-46496 - Missing TLS Certificate Validation in DoorEntry HOMETOUCH for iOS
  • CVE-2023-0642 - Cross-Site Request Forgery (CSRF) in Squidex CMS
  • CVE-2022-37721 - Stored Cross-Site Scripting in PyroCMS
  • CVE-2022-37720 - Stored Cross-Site Scripting in OrchardCMS
  • CVE-2022-37251 - Stored XSS in Drafts in Craft CMS

Latest Articles

  • The Curious Case of Apple iOS IKEv2 VPN On Demand
  • Gmail Android app insecure Network Security Configuration.
  • Reviewing Android Webviews fileAccess attack vectors.
  • Droidstat-X, Android Applications Security Analyser Xmind Generator
  • Uber Hacking: How we found out who you are, where you are and where you went!

Related news

CVE-2023-0642: Antiforgery for profile pages. · Squidex/squidex@2da3c41

Cross-Site Request Forgery (CSRF) in GitHub repository squidex/squidex prior to 7.4.0.

GHSA-cm7f-hf2g-ghrp: PyroCMS vulnerable to stored Cross Site Scripting

PyroCMS 3.9 is vulnerable to a stored Cross Site Scripting (XSS) when a low privileged user, such as an author, injects a crafted html and javascript payload in a blog post, leading to full admin account takeover or privilege escalation.

CVE-2022-37721: The PHP CMS built for Laravel.

PyroCMS 3.9 is vulnerable to a stored Cross Site Scripting (XSS_ when a low privileged user such as an author, injects a crafted html and javascript payload in a blog post, leading to full admin account takeover or privilege escalation.

CVE-2022-37720: Orchard | Buy your next home before you sell

Orchardproject Orchard CMS 1.10.3 is vulnerable to Cross Site Scripting (XSS). When a low privileged user such as an author or publisher, injects a crafted html and javascript payload in a blog post, leading to full admin account takeover or privilege escalation when the malicious blog post is loaded in the victim's browser.

GHSA-mw37-wx8p-gp45: Craft CMS vulnerable to Cross-site Scripting via Drafts

Craft CMS 4.2.0.1 is vulnerable to Cross Site Scripting (XSS) via Drafts. Version 4.2.1 contains a patch for this issue.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907