CNNVD-202509-2179 Information

CNNVD ID

CNNVD-202509-2179

CVE-2025-50944

  • CNNVD Published: 2025-09-15

Description (Chinese)

AVTECH EagleEyes是中国台湾陞泰科技(AVTECH)公司的一款远程即时监控移动应用。 AVTECH EagleEyes 2.0.0版本存在安全漏洞,该漏洞源于自定义X509TrustManager仅检查证书过期日期,跳过TLS链验证。

Description (English)

AVTECCH EagleEyes is a long-range, instant mobile monitoring application for the company AVTECCH of Taiwan, China. AVTECH EagleEyes version 2.0.0 contains a security loophole that originates from the custom X509TrustManager only checking the certificate expiry date and skipping the TLS chain authentication.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Avtech Software

Published

2025-09-15

Last Modified

2026-02-24

References

https://github.com/shinyColumn/CVE-2025-50944 https://shinycolumn.notion.site/eagleeyes-lite https://access.redhat.com/security/cve/cve-2025-50944

Share on: