cve/2024/CVE-2024-27440.md
2024-08-05 18:41:32 +00:00

1.0 KiB

CVE-2024-27440

Description

The Toyoko Inn official App for iOS versions prior to 1.13.0 and Toyoko Inn official App for Android versions prior 1.3.14 don't properly verify server certificates, which allows a man-in-the-middle attacker to spoof servers and obtain sensitive information via a crafted certificate.

POC

Reference

No PoCs from references.

Github