Aug. 22, 2023, 7:16 p.m. |

National Vulnerability Database web.nvd.nist.gov

Improper verification of applications' cryptographic signatures in the /e/OS app store client App Lounge before 0.19q allows attackers in control of the application server to install malicious applications on user's systems by altering the server's API response.

api app application applications attackers client control cryptographic cryptographic signatures cve install malicious response server signatures store systems verification

Senior Offensive Cyber Analyst

@ PeopleTec | HUNTSVILLE, AL, United States

Cyber Systems Administrator

@ Peraton | San Diego, CA, United States

Senior Security Analyst (SOC)

@ Accesa & RaRo | Cluj-Napoca, Romania

Level 1 SOC Analyst

@ Telefonica Tech | Dublin, United Kingdom

Cyberspace Intelligence Analyst

@ Peraton | Fort Meade, MD, United States

Technical Product Manager, Electronic Warfare

@ Anduril | Costa Mesa, California, United States