CVE-2019-12496

An issue was discovered in Hybrid Group Gobot before 1.13.0. The mqtt subsystem skips verification of root CA certificates by default.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hybridgroup:gobot:*:*:*:*:*:*:*:*

History

09 Feb 2024, 03:20

Type Values Removed Values Added
References () https://github.com/hybridgroup/gobot/compare/ed53198...7f973df - Patch, Third Party Advisory () https://github.com/hybridgroup/gobot/compare/ed53198...7f973df - Patch
References () https://github.com/hybridgroup/gobot/releases/tag/v1.13.0 - Release Notes, Third Party Advisory () https://github.com/hybridgroup/gobot/releases/tag/v1.13.0 - Release Notes

Information

Published : 2019-05-31 11:29

Updated : 2024-02-09 03:20


NVD link : CVE-2019-12496

Mitre link : CVE-2019-12496

CVE.ORG link : CVE-2019-12496


JSON object : View

Products Affected

hybridgroup

  • gobot
CWE
CWE-295

Improper Certificate Validation