Taipower APP developed by Taipower has an Improper Certificate Validation vulnerability. When establishing an HTTPS connection with the server, the application fails to verify the server-side TLS/SSL certificate. This flaw allows an unauthenticated remote attackers to exploit the vulnerability to perform a Man-in-the-Middle (MITM) attack to read and tamper with network packets.
Metrics
Affected Vendors & Products
References
History
Mon, 09 Mar 2026 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Taipower APP developed by Taipower has an Improper Certificate Validation vulnerability. When establishing an HTTPS connection with the server, the application fails to verify the server-side TLS/SSL certificate. This flaw allows an unauthenticated remote attackers to exploit the vulnerability to perform a Man-in-the-Middle (MITM) attack to read and tamper with network packets. | |
| Title | Taipower|Taipower APP - Improper Certificate Validation | |
| First Time appeared |
Taipower
Taipower taipower App |
|
| Weaknesses | CWE-295 | |
| CPEs | cpe:2.3:a:taipower:taipower_app:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Taipower
Taipower taipower App |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published: 2026-03-09T03:38:35.449Z
Updated: 2026-03-09T05:59:33.384Z
Reserved: 2026-03-09T03:01:54.726Z
Link: CVE-2026-3822
No data.
Status : Received
Published: 2026-03-09T04:16:10.173
Modified: 2026-03-09T04:16:10.173
Link: CVE-2026-3822
No data.