CVE 2.3 LOW

CVE-2025-60022_CVE-2025-60022

2.3 / 10
LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N

Description

Improper certificate validation vulnerability exists in 'デジラアプリ' App for iOS prior to ver.80.10.00. If this vulnerability is exploited, a man-in-the-middle attack may allow an attacker to eavesdrop on and/or tamper with an encrypted communication.

Basic Information

ID CVE-2025-60022
Source jpcert
Published Nov 17, 2025 at 05:51

Affected Product

Vendor KDDI CORPORATION
Product 'デジラアプリ' App for iOS
Version prior to ver.80.10.00
Affected Versions KDDI CORPORATION 'デジラアプリ' App for iOS prior to ver.80.10.00

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.