Description
An issue was discovered in the method push.lite.avtech.com.MySSLSocketFactoryNew.checkServerTrusted in AVTECH EagleEyes 2.0.0. The custom X509TrustManager used in checkServerTrusted only checks the certificate's expiration date, skipping proper TLS chain validation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-29191 | An issue was discovered in the method push.lite.avtech.com.MySSLSocketFactoryNew.checkServerTrusted in AVTECH EagleEyes 2.0.0. The custom X509TrustManager used in checkServerTrusted only checks the certificate's expiration date, skipping proper TLS chain validation. |
References
History
Tue, 14 Oct 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Avtech
Avtech eagleeyes\(lite\) |
|
| CPEs | cpe:2.3:a:avtech:eagleeyes\(lite\):2.0.0:*:*:*:*:android:*:* | |
| Vendors & Products |
Avtech
Avtech eagleeyes\(lite\) |
Mon, 15 Sep 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-295 | |
| Metrics |
cvssV3_1
|
Mon, 15 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in the method push.lite.avtech.com.MySSLSocketFactoryNew.checkServerTrusted in AVTECH EagleEyes 2.0.0. The custom X509TrustManager used in checkServerTrusted only checks the certificate's expiration date, skipping proper TLS chain validation. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-09-15T14:26:24.185Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-50944
Updated: 2025-09-15T14:25:01.872Z
Status : Analyzed
Published: 2025-09-15T14:15:43.550
Modified: 2025-10-14T19:41:19.230
Link: CVE-2025-50944
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD