RSS   Vulnerabilities for 'P2P'   RSS

2020-08-10
 
CVE-2020-9526

CWE-200
 

 
CS2 Network P2P through 3.x, as used in millions of Internet of Things devices, suffers from an information exposure flaw that exposes user session data to supernodes in the network, as demonstrated by passively eavesdropping on user video/audio streams, capturing credentials, and compromising devices.

 
 
CVE-2020-9525

CWE-295
 

 
CS2 Network P2P through 3.x, as used in millions of Internet of Things devices, suffers from an authentication flaw that allows remote attackers to perform a man-in-the-middle attack, as demonstrated by eavesdropping on user video/audio streams, capturing credentials, and compromising devices.

 


Copyright 2024, cxsecurity.com

 

Back to Top