TONE store App version 3.4.2 and earlier contains an issue with unprotected primary channel. Since TONE store App communicates with TONE store website in cleartext, a man-in-the-middle attack may allow an attacker to obtain and/or alter communications of the affected App.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2024-07-10T06:41:46.185Z

Updated: 2024-08-02T04:33:10.953Z

Reserved: 2024-07-02T05:24:02.497Z

Link: CVE-2024-39886

cve-icon Vulnrichment

Updated: 2024-08-02T04:33:10.953Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-07-10T07:15:03.247

Modified: 2024-07-11T15:06:15.210

Link: CVE-2024-39886

cve-icon Redhat

No data.